I0505 22:22:35.271947 1 start.go:75] "cert-manager: starting controller" version="v1.12.10" git-commit="4131d77fe377e78a6fa562af6bdbd31532ddb1ad" I0505 22:22:35.272083 1 controller.go:262] "cert-manager/controller/build-context: configured acme dns01 nameservers" nameservers=["10.96.0.10:53"] W0505 22:22:35.272183 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0505 22:22:35.276627 1 controller.go:82] "cert-manager/controller: enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" I0505 22:22:35.276957 1 controller.go:156] "cert-manager/controller: starting leader election" I0505 22:22:35.277405 1 controller.go:149] "cert-manager/controller: starting healthz server" address="[::]:9403" I0505 22:22:35.277494 1 controller.go:103] "cert-manager/controller: starting metrics server" address="[::]:9402" I0505 22:22:35.282361 1 leaderelection.go:245] attempting to acquire leader lease cert-manager/cert-manager-controller... I0505 22:22:35.397502 1 leaderelection.go:255] successfully acquired lease cert-manager/cert-manager-controller I0505 22:22:35.402828 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-key-manager" I0505 22:22:35.407773 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-readiness" I0505 22:22:35.409757 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificaterequests-issuer-acme" I0505 22:22:35.411695 1 controller.go:203] "cert-manager/controller: not starting controller as it's disabled" controller="certificatesigningrequests-issuer-acme" I0505 22:22:35.411761 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificaterequests-issuer-vault" I0505 22:22:35.411760 1 controller.go:203] "cert-manager/controller: not starting controller as it's disabled" controller="certificatesigningrequests-issuer-ca" I0505 22:22:35.417849 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificaterequests-approver" I0505 22:22:35.420809 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-metrics" I0505 22:22:35.423722 1 controller.go:203] "cert-manager/controller: not starting controller as it's disabled" controller="certificatesigningrequests-issuer-venafi" I0505 22:22:35.423786 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificaterequests-issuer-selfsigned" I0505 22:22:35.427045 1 controller.go:226] "cert-manager/controller: starting controller" controller="clusterissuers" I0505 22:22:35.431329 1 controller.go:203] "cert-manager/controller: not starting controller as it's disabled" controller="gateway-shim" I0505 22:22:35.431495 1 controller.go:226] "cert-manager/controller: starting controller" controller="challenges" I0505 22:22:35.435504 1 controller.go:226] "cert-manager/controller: starting controller" controller="ingress-shim" I0505 22:22:35.439775 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-issuing" I0505 22:22:35.441686 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-trigger" I0505 22:22:35.446329 1 controller.go:203] "cert-manager/controller: not starting controller as it's disabled" controller="certificatesigningrequests-issuer-vault" I0505 22:22:35.446392 1 controller.go:226] "cert-manager/controller: starting controller" controller="orders" I0505 22:22:35.448283 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-request-manager" I0505 22:22:35.449978 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-revision-manager" I0505 22:22:35.451685 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificaterequests-issuer-ca" I0505 22:22:35.453285 1 controller.go:203] "cert-manager/controller: not starting controller as it's disabled" controller="certificatesigningrequests-issuer-selfsigned" I0505 22:22:35.453408 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificaterequests-issuer-venafi" I0505 22:22:35.455469 1 controller.go:226] "cert-manager/controller: starting controller" controller="issuers" I0505 22:22:57.804452 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-05-05 22:22:57.804427425 +0000 UTC m=+22.569782593 I0505 22:22:58.615912 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 22:22:58.615947 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-05-05 22:22:58.615941292 +0000 UTC m=+23.381296420 I0505 22:22:58.616681 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-05-05 22:22:58.61667697 +0000 UTC m=+23.382032098 I0505 22:22:58.785487 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:22:58.785568 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-05-05 22:22:58.785560717 +0000 UTC m=+23.550915835 E0505 22:22:58.800045 1 setup.go:48] "cert-manager/clusterissuers/setup: error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0505 22:22:58.800101 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-05-05 22:22:58.800092863 +0000 UTC m=+23.565448021 E0505 22:22:58.800155 1 sync.go:62] "cert-manager/clusterissuers: error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0505 22:22:58.842092 1 controller.go:167] "cert-manager/clusterissuers: re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" key="atmosphere" E0505 22:22:58.842290 1 setup.go:48] "cert-manager/clusterissuers/setup: error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0505 22:22:58.842455 1 sync.go:62] "cert-manager/clusterissuers: error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0505 22:22:58.842552 1 controller.go:167] "cert-manager/clusterissuers: re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" key="atmosphere" I0505 22:22:59.054964 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:22:59.109844 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-wpvfk" condition "Approved" to 2026-05-05 22:22:59.109830951 +0000 UTC m=+23.875186089 I0505 22:22:59.164662 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-wpvfk" condition "Ready" to 2026-05-05 22:22:59.164641899 +0000 UTC m=+23.929997067 I0505 22:22:59.359834 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 22:22:59.359817235 +0000 UTC m=+24.125172403 I0505 22:22:59.448847 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:23:03.842873 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 22:23:03.842861038 +0000 UTC m=+28.608216176 I0505 22:23:43.140001 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-05-05 22:23:43.139979431 +0000 UTC m=+67.905334589 I0505 22:23:43.140701 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 22:23:43.140751 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-05-05 22:23:43.140740939 +0000 UTC m=+67.906096077 I0505 22:23:43.150177 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-05-05 22:23:43.150159867 +0000 UTC m=+67.915515015 I0505 22:23:43.164252 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:23:43.164688 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 22:23:43.164725 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-05-05 22:23:43.164716342 +0000 UTC m=+67.930071480 I0505 22:23:43.388424 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:23:43.399146 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-klw6w" condition "Approved" to 2026-05-05 22:23:43.399135059 +0000 UTC m=+68.164490187 I0505 22:23:43.428464 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-klw6w" condition "Ready" to 2026-05-05 22:23:43.428450645 +0000 UTC m=+68.193805783 I0505 22:23:43.458758 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 22:23:43.458743084 +0000 UTC m=+68.224098222 I0505 22:23:43.479827 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:23:43.480416 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 22:23:43.480408553 +0000 UTC m=+68.245763691 I0505 22:23:43.542000 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:23:43.542986 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:27:22.894163 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-128.nip.io-tls" condition "Ready" to 2026-05-05 22:27:22.89414233 +0000 UTC m=+287.659497488 I0505 22:27:22.894974 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="auth-system/keycloak.199-19-213-128.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 22:27:22.895000 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-128.nip.io-tls" condition "Issuing" to 2026-05-05 22:27:22.89499381 +0000 UTC m=+287.660348968 I0505 22:27:22.914306 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="auth-system/keycloak.199-19-213-128.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-128.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:27:22.914380 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="auth-system/keycloak.199-19-213-128.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 22:27:22.914395 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-128.nip.io-tls" condition "Issuing" to 2026-05-05 22:27:22.914390165 +0000 UTC m=+287.679745303 I0505 22:27:23.161089 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="auth-system/keycloak.199-19-213-128.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-128.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:27:23.165636 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-128.nip.io-tls-9kx4h" condition "Approved" to 2026-05-05 22:27:23.165614387 +0000 UTC m=+287.930969555 I0505 22:27:23.195832 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-128.nip.io-tls-9kx4h" condition "Ready" to 2026-05-05 22:27:23.195807589 +0000 UTC m=+287.961162737 I0505 22:27:23.238379 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-128.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 22:27:23.238365605 +0000 UTC m=+288.003720733 I0505 22:27:23.256843 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="auth-system/keycloak.199-19-213-128.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-128.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:27:23.258712 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-128.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 22:27:23.258687801 +0000 UTC m=+288.024042969 I0505 22:27:23.277012 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="auth-system/keycloak.199-19-213-128.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-128.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:28:25.785093 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-05-05 22:28:25.785069646 +0000 UTC m=+350.550424804 I0505 22:28:25.785787 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 22:28:25.785875 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-05-05 22:28:25.785865934 +0000 UTC m=+350.551221092 E0505 22:28:25.799562 1 setup.go:48] "cert-manager/clusterissuers/setup: error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0505 22:28:25.799595 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-05-05 22:28:25.799588119 +0000 UTC m=+350.564943257 E0505 22:28:25.799619 1 sync.go:62] "cert-manager/clusterissuers: error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0505 22:28:25.802753 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:28:25.802821 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 22:28:25.802844 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-05-05 22:28:25.802838643 +0000 UTC m=+350.568193791 E0505 22:28:25.814490 1 controller.go:167] "cert-manager/clusterissuers: re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" key="kube-prometheus-stack" E0505 22:28:25.814752 1 setup.go:48] "cert-manager/clusterissuers/setup: error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0505 22:28:25.814859 1 sync.go:62] "cert-manager/clusterissuers: error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0505 22:28:25.814944 1 controller.go:167] "cert-manager/clusterissuers: re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" key="kube-prometheus-stack" I0505 22:28:25.843507 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-4c4xh" condition "Approved" to 2026-05-05 22:28:25.843481805 +0000 UTC m=+350.608836973 I0505 22:28:25.857803 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-4c4xh" condition "Ready" to 2026-05-05 22:28:25.857792513 +0000 UTC m=+350.623147641 I0505 22:28:25.877590 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 22:28:25.877578117 +0000 UTC m=+350.642933255 I0505 22:28:25.894120 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:28:25.894465 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 22:28:25.894456884 +0000 UTC m=+350.659812022 I0505 22:28:25.909520 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:28:25.912205 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:28:30.815810 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 22:28:30.815793231 +0000 UTC m=+355.581148399 I0505 22:29:11.435835 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-05-05 22:29:11.435810714 +0000 UTC m=+396.201165852 I0505 22:29:11.436379 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 22:29:11.436434 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-05-05 22:29:11.436427118 +0000 UTC m=+396.201782246 I0505 22:29:11.436654 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-05-05 22:29:11.436649123 +0000 UTC m=+396.202004251 I0505 22:29:11.436714 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 22:29:11.436734 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-05-05 22:29:11.436729894 +0000 UTC m=+396.202085032 I0505 22:29:11.436850 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 22:29:11.436885 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-05-05 22:29:11.436880858 +0000 UTC m=+396.202235986 I0505 22:29:11.436888 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-05-05 22:29:11.436877988 +0000 UTC m=+396.202233126 I0505 22:29:11.513584 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:29:11.513692 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 22:29:11.513826 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-05-05 22:29:11.513818745 +0000 UTC m=+396.279173873 I0505 22:29:11.515320 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:29:11.515379 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-05-05 22:29:11.51537495 +0000 UTC m=+396.280730078 I0505 22:29:11.518289 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:29:11.518339 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-05-05 22:29:11.518334908 +0000 UTC m=+396.283690036 I0505 22:29:12.173823 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:29:12.175735 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:29:12.208612 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:29:12.217997 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-2fnsc" condition "Approved" to 2026-05-05 22:29:12.217975866 +0000 UTC m=+396.983331004 I0505 22:29:12.263039 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-7bppn" condition "Approved" to 2026-05-05 22:29:12.26302467 +0000 UTC m=+397.028379808 I0505 22:29:12.263591 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-lsg6j" condition "Approved" to 2026-05-05 22:29:12.263580653 +0000 UTC m=+397.028935791 I0505 22:29:12.266697 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-2fnsc" condition "Ready" to 2026-05-05 22:29:12.266682235 +0000 UTC m=+397.032037373 I0505 22:29:12.287248 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-7bppn" condition "Ready" to 2026-05-05 22:29:12.287231886 +0000 UTC m=+397.052587024 I0505 22:29:12.287285 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-lsg6j" condition "Ready" to 2026-05-05 22:29:12.287276977 +0000 UTC m=+397.052632135 I0505 22:29:12.309459 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 22:29:12.309436256 +0000 UTC m=+397.074791424 I0505 22:29:12.323584 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 22:29:12.323563891 +0000 UTC m=+397.088919059 I0505 22:29:12.330280 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 22:29:12.330256864 +0000 UTC m=+397.095612032 I0505 22:29:12.333843 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:29:12.334569 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 22:29:12.334559693 +0000 UTC m=+397.099914841 I0505 22:29:12.402552 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:29:12.403559 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 22:29:12.403550327 +0000 UTC m=+397.168905495 I0505 22:29:12.502780 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:29:12.503679 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 22:29:12.503669837 +0000 UTC m=+397.269025005 I0505 22:29:13.088208 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 22:29:13.08817564 +0000 UTC m=+397.853530808 I0505 22:29:13.098780 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:29:13.107451 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:29:13.149173 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:29:13.317380 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:29:13.341480 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:29:13.343124 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:29:13.547043 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:29:29.442920 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-dwgmz-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 22:29:29.442925 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-dwgmz-tls" condition "Ready" to 2026-05-05 22:29:29.442900174 +0000 UTC m=+414.208255342 I0505 22:29:29.442956 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-dwgmz-tls" condition "Issuing" to 2026-05-05 22:29:29.442948685 +0000 UTC m=+414.208303823 I0505 22:29:29.473316 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-dwgmz-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-dwgmz-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:29:29.473405 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-dwgmz-tls" condition "Ready" to 2026-05-05 22:29:29.473393844 +0000 UTC m=+414.238748982 I0505 22:29:29.605488 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-dwgmz-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-dwgmz-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:29:29.641572 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-dwgmz-52nfz" condition "Approved" to 2026-05-05 22:29:29.641527665 +0000 UTC m=+414.406882803 I0505 22:29:29.666536 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-dwgmz-52nfz" condition "Ready" to 2026-05-05 22:29:29.666506429 +0000 UTC m=+414.431861557 I0505 22:29:29.704314 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-dwgmz-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 22:29:29.704297507 +0000 UTC m=+414.469652645 I0505 22:29:29.729846 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-dwgmz-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-dwgmz-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:29:29.730736 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-dwgmz-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 22:29:29.730724024 +0000 UTC m=+414.496079162 I0505 22:29:29.753083 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-dwgmz-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-dwgmz-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:29:29.753602 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-dwgmz-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-dwgmz-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:29:29.754163 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-dwgmz-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 22:29:29.754154072 +0000 UTC m=+414.519509220 I0505 22:30:08.977565 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 22:30:08.977600 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-05-05 22:30:08.977592696 +0000 UTC m=+453.742947864 I0505 22:30:08.977577 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-05-05 22:30:08.977562995 +0000 UTC m=+453.742918153 I0505 22:30:08.993578 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:30:08.993799 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 22:30:08.993843 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-05-05 22:30:08.993829956 +0000 UTC m=+453.759185124 I0505 22:30:09.221787 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-p7ntq" condition "Approved" to 2026-05-05 22:30:09.221770556 +0000 UTC m=+453.987125684 I0505 22:30:09.241475 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-p7ntq" condition "Ready" to 2026-05-05 22:30:09.241459616 +0000 UTC m=+454.006814784 I0505 22:30:09.272916 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 22:30:09.272899634 +0000 UTC m=+454.038254772 I0505 22:30:09.294206 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:30:09.294690 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 22:30:09.294681332 +0000 UTC m=+454.060036450 I0505 22:30:09.305727 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:30:09.316187 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:30:09.316848 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 22:30:09.316838629 +0000 UTC m=+454.082193757 I0505 22:33:22.483412 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 22:33:22.483451 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-05-05 22:33:22.483441742 +0000 UTC m=+647.248796910 I0505 22:33:22.483679 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-05-05 22:33:22.483657337 +0000 UTC m=+647.249012465 I0505 22:33:22.514108 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:33:22.514194 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-05-05 22:33:22.514183881 +0000 UTC m=+647.279539029 I0505 22:33:22.660105 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:33:22.688513 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-cdrvv" condition "Approved" to 2026-05-05 22:33:22.688501993 +0000 UTC m=+647.453857131 I0505 22:33:22.712927 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-cdrvv" condition "Ready" to 2026-05-05 22:33:22.712912639 +0000 UTC m=+647.478267767 I0505 22:33:22.741031 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 22:33:22.741014907 +0000 UTC m=+647.506370055 I0505 22:33:22.765674 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:33:22.766056 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 22:33:22.766050697 +0000 UTC m=+647.531405825 I0505 22:33:22.782877 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:33:22.794367 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:35:46.242133 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 22:35:46.242147 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-05-05 22:35:46.242121879 +0000 UTC m=+791.007477037 I0505 22:35:46.242216 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-05-05 22:35:46.242205291 +0000 UTC m=+791.007560449 I0505 22:35:46.446307 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:35:46.446399 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-05-05 22:35:46.446389519 +0000 UTC m=+791.211744667 I0505 22:35:46.656450 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:35:46.685676 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-68l79" condition "Approved" to 2026-05-05 22:35:46.685661425 +0000 UTC m=+791.451016583 I0505 22:35:46.709490 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-68l79" condition "Ready" to 2026-05-05 22:35:46.709474707 +0000 UTC m=+791.474829875 I0505 22:35:46.734856 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 22:35:46.734837825 +0000 UTC m=+791.500192993 I0505 22:35:46.759967 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:35:46.760547 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 22:35:46.76053953 +0000 UTC m=+791.525894678 I0505 22:35:46.780562 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:35:46.781111 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 22:35:46.781104118 +0000 UTC m=+791.546459246 I0505 22:37:13.402623 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-05-05 22:37:13.402600398 +0000 UTC m=+878.167955566 I0505 22:37:13.402756 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 22:37:13.402838 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-05-05 22:37:13.402830733 +0000 UTC m=+878.168185861 I0505 22:37:13.640400 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:37:13.642128 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 22:37:13.644096 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-05-05 22:37:13.64219014 +0000 UTC m=+878.407545288 I0505 22:37:14.318503 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:37:14.353828 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-tk8sn" condition "Approved" to 2026-05-05 22:37:14.353812937 +0000 UTC m=+879.119168075 I0505 22:37:14.427550 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-tk8sn" condition "Ready" to 2026-05-05 22:37:14.427538145 +0000 UTC m=+879.192893283 I0505 22:37:14.654297 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 22:37:14.654283496 +0000 UTC m=+879.419638634 I0505 22:37:14.998377 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:37:15.179564 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:40:24.774822 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 22:40:24.774880 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-05-05 22:40:24.774872838 +0000 UTC m=+1069.540227976 I0505 22:40:24.775103 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-05-05 22:40:24.775086523 +0000 UTC m=+1069.540441661 I0505 22:40:24.795805 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:40:24.796002 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-05-05 22:40:24.795989567 +0000 UTC m=+1069.561344735 I0505 22:40:25.115842 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:40:25.171406 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-bl2hd" condition "Approved" to 2026-05-05 22:40:25.171385718 +0000 UTC m=+1069.936740886 I0505 22:40:25.190531 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-bl2hd" condition "Ready" to 2026-05-05 22:40:25.190515382 +0000 UTC m=+1069.955870540 I0505 22:40:25.217706 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 22:40:25.217688917 +0000 UTC m=+1069.983044055 I0505 22:40:25.244182 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:40:25.244596 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 22:40:25.244590146 +0000 UTC m=+1070.009945274 I0505 22:40:25.263036 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:46:40.975577 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/cinder-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 22:46:40.975656 1 conditions.go:203] Setting lastTransitionTime for Certificate "cinder-api-certs" condition "Issuing" to 2026-05-05 22:46:40.97564652 +0000 UTC m=+1445.741001678 I0505 22:46:40.975978 1 conditions.go:203] Setting lastTransitionTime for Certificate "cinder-api-certs" condition "Ready" to 2026-05-05 22:46:40.975953747 +0000 UTC m=+1445.741308915 I0505 22:46:40.991194 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/cinder-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"cinder-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:46:40.991283 1 conditions.go:203] Setting lastTransitionTime for Certificate "cinder-api-certs" condition "Ready" to 2026-05-05 22:46:40.9912732 +0000 UTC m=+1445.756628368 I0505 22:46:41.150360 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/cinder-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"cinder-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:46:41.194537 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "cinder-api-certs-jmjpt" condition "Approved" to 2026-05-05 22:46:41.194499578 +0000 UTC m=+1445.959854736 I0505 22:46:41.215094 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "cinder-api-certs-jmjpt" condition "Ready" to 2026-05-05 22:46:41.21508029 +0000 UTC m=+1445.980435428 I0505 22:46:41.246869 1 conditions.go:192] Found status change for Certificate "cinder-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 22:46:41.246847334 +0000 UTC m=+1446.012202492 I0505 22:46:41.275654 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/cinder-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"cinder-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:46:41.276249 1 conditions.go:192] Found status change for Certificate "cinder-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 22:46:41.276240695 +0000 UTC m=+1446.041595833 I0505 22:46:41.298239 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/cinder-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"cinder-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:48:04.816472 1 conditions.go:203] Setting lastTransitionTime for Certificate "placement-api-certs" condition "Ready" to 2026-05-05 22:48:04.816457242 +0000 UTC m=+1529.581812370 I0505 22:48:04.816485 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/placement-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 22:48:04.816549 1 conditions.go:203] Setting lastTransitionTime for Certificate "placement-api-certs" condition "Issuing" to 2026-05-05 22:48:04.816542123 +0000 UTC m=+1529.581897261 I0505 22:48:04.835671 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/placement-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"placement-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:48:04.835771 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/placement-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 22:48:04.835803 1 conditions.go:203] Setting lastTransitionTime for Certificate "placement-api-certs" condition "Issuing" to 2026-05-05 22:48:04.835794485 +0000 UTC m=+1529.601149653 I0505 22:48:05.250165 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "placement-api-certs-r4s4v" condition "Approved" to 2026-05-05 22:48:05.250153033 +0000 UTC m=+1530.015508161 I0505 22:48:05.271403 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "placement-api-certs-r4s4v" condition "Ready" to 2026-05-05 22:48:05.271388299 +0000 UTC m=+1530.036743457 I0505 22:48:05.304022 1 conditions.go:192] Found status change for Certificate "placement-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 22:48:05.30400564 +0000 UTC m=+1530.069360778 I0505 22:48:05.324713 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/placement-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"placement-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:48:05.326227 1 conditions.go:192] Found status change for Certificate "placement-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 22:48:05.326207398 +0000 UTC m=+1530.091562566 I0505 22:48:05.332540 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="openstack/placement-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"placement-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:48:05.353380 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/placement-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"placement-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:48:05.354171 1 conditions.go:192] Found status change for Certificate "placement-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 22:48:05.354165864 +0000 UTC m=+1530.119521002 I0505 22:49:06.264649 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-vnc-ca" condition "Ready" to 2026-05-05 22:49:06.264632451 +0000 UTC m=+1591.029987589 I0505 22:49:06.265106 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/libvirt-vnc-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 22:49:06.265128 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-vnc-ca" condition "Issuing" to 2026-05-05 22:49:06.265124393 +0000 UTC m=+1591.030479531 I0505 22:49:06.282284 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/libvirt-vnc-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-vnc-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:49:06.282423 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-vnc-ca" condition "Ready" to 2026-05-05 22:49:06.2824081 +0000 UTC m=+1591.047763288 I0505 22:49:06.300302 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/libvirt-vnc-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-vnc-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:49:06.325082 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-vnc-ca-n9m5x" condition "Approved" to 2026-05-05 22:49:06.325061977 +0000 UTC m=+1591.090417145 I0505 22:49:06.345578 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-vnc-ca-n9m5x" condition "Ready" to 2026-05-05 22:49:06.345553705 +0000 UTC m=+1591.110908863 I0505 22:49:06.374403 1 conditions.go:192] Found status change for Certificate "libvirt-vnc-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 22:49:06.374388552 +0000 UTC m=+1591.139743670 I0505 22:49:06.407084 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/libvirt-vnc-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-vnc-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:49:06.407447 1 conditions.go:192] Found status change for Certificate "libvirt-vnc-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 22:49:06.407428922 +0000 UTC m=+1591.172784060 I0505 22:49:06.422736 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/libvirt-vnc-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-vnc-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:49:06.424901 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/libvirt-vnc-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-vnc-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:49:06.425135 1 conditions.go:192] Found status change for Certificate "libvirt-vnc-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 22:49:06.42512961 +0000 UTC m=+1591.190484738 I0505 22:49:06.897491 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-api-ca" condition "Ready" to 2026-05-05 22:49:06.897474876 +0000 UTC m=+1591.662829994 I0505 22:49:06.898145 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/libvirt-api-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 22:49:06.898166 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-api-ca" condition "Issuing" to 2026-05-05 22:49:06.898162693 +0000 UTC m=+1591.663517811 I0505 22:49:06.913682 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/libvirt-api-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-api-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:49:06.913773 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/libvirt-api-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 22:49:06.913793 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-api-ca" condition "Issuing" to 2026-05-05 22:49:06.913785632 +0000 UTC m=+1591.679140800 I0505 22:49:06.959062 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-api-ca-vfjbn" condition "Approved" to 2026-05-05 22:49:06.959047697 +0000 UTC m=+1591.724402835 I0505 22:49:06.979176 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-api-ca-vfjbn" condition "Ready" to 2026-05-05 22:49:06.979162227 +0000 UTC m=+1591.744517365 I0505 22:49:07.003867 1 conditions.go:192] Found status change for Certificate "libvirt-api-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 22:49:07.003854471 +0000 UTC m=+1591.769209609 I0505 22:49:07.026682 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/libvirt-api-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-api-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:49:07.026887 1 conditions.go:192] Found status change for Certificate "libvirt-api-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 22:49:07.026880997 +0000 UTC m=+1591.792236135 I0505 22:49:07.045063 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/libvirt-api-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-api-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:49:07.568351 1 conditions.go:96] Setting lastTransitionTime for Issuer "libvirt-vnc" condition "Ready" to 2026-05-05 22:49:07.568340014 +0000 UTC m=+1592.333695152 I0505 22:49:08.200045 1 conditions.go:96] Setting lastTransitionTime for Issuer "libvirt-api" condition "Ready" to 2026-05-05 22:49:08.200032603 +0000 UTC m=+1592.965387741 I0505 22:49:56.064861 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/nova-novncproxy-vencrypt" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 22:49:56.064897 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-novncproxy-vencrypt" condition "Issuing" to 2026-05-05 22:49:56.064889957 +0000 UTC m=+1640.830245085 I0505 22:49:56.066607 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-novncproxy-vencrypt" condition "Ready" to 2026-05-05 22:49:56.066593526 +0000 UTC m=+1640.831948674 I0505 22:49:56.095656 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/nova-novncproxy-vencrypt" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-novncproxy-vencrypt\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:49:56.095740 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-novncproxy-vencrypt" condition "Ready" to 2026-05-05 22:49:56.095733979 +0000 UTC m=+1640.861089107 I0505 22:49:58.564559 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/nova-novncproxy-vencrypt" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-novncproxy-vencrypt\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:49:58.617672 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "nova-novncproxy-vencrypt-t4jvq" condition "Approved" to 2026-05-05 22:49:58.617656157 +0000 UTC m=+1643.383011315 I0505 22:49:58.642808 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "nova-novncproxy-vencrypt-t4jvq" condition "Ready" to 2026-05-05 22:49:58.642797961 +0000 UTC m=+1643.408153099 I0505 22:49:58.683666 1 conditions.go:192] Found status change for Certificate "nova-novncproxy-vencrypt" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 22:49:58.683650856 +0000 UTC m=+1643.449005994 I0505 22:49:58.702598 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/nova-novncproxy-vencrypt" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-novncproxy-vencrypt\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:49:58.704314 1 conditions.go:192] Found status change for Certificate "nova-novncproxy-vencrypt" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 22:49:58.7043062 +0000 UTC m=+1643.469661338 I0505 22:49:58.716841 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="openstack/nova-novncproxy-vencrypt" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-novncproxy-vencrypt\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:49:58.733204 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/nova-novncproxy-vencrypt" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-novncproxy-vencrypt\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:52:26.494280 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-api-certs" condition "Ready" to 2026-05-05 22:52:26.494259176 +0000 UTC m=+1791.259614324 I0505 22:52:26.494770 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/nova-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 22:52:26.494809 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-api-certs" condition "Issuing" to 2026-05-05 22:52:26.494803858 +0000 UTC m=+1791.260158996 I0505 22:52:26.513598 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/nova-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:52:26.513649 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-api-certs" condition "Ready" to 2026-05-05 22:52:26.513643163 +0000 UTC m=+1791.278998281 I0505 22:52:26.637490 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/nova-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:52:26.668426 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "nova-api-certs-rjhtw" condition "Approved" to 2026-05-05 22:52:26.66840876 +0000 UTC m=+1791.433763918 I0505 22:52:26.689435 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "nova-api-certs-rjhtw" condition "Ready" to 2026-05-05 22:52:26.689419924 +0000 UTC m=+1791.454775062 I0505 22:52:26.727380 1 conditions.go:192] Found status change for Certificate "nova-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 22:52:26.727364898 +0000 UTC m=+1791.492720036 I0505 22:52:26.751616 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/nova-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:52:26.752276 1 conditions.go:192] Found status change for Certificate "nova-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 22:52:26.75226996 +0000 UTC m=+1791.517625108 I0505 22:52:26.766524 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="openstack/nova-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:52:26.774323 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/nova-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:52:28.013362 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-novncproxy-certs" condition "Ready" to 2026-05-05 22:52:28.013330395 +0000 UTC m=+1792.778685553 I0505 22:52:28.013539 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/nova-novncproxy-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 22:52:28.013594 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-novncproxy-certs" condition "Issuing" to 2026-05-05 22:52:28.01358106 +0000 UTC m=+1792.778936228 I0505 22:52:28.029438 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/nova-novncproxy-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-novncproxy-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:52:28.029519 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/nova-novncproxy-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 22:52:28.029566 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-novncproxy-certs" condition "Issuing" to 2026-05-05 22:52:28.02952919 +0000 UTC m=+1792.794884328 I0505 22:52:28.285195 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/nova-novncproxy-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-novncproxy-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:52:28.294610 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "nova-novncproxy-certs-rk9ml" condition "Approved" to 2026-05-05 22:52:28.294597813 +0000 UTC m=+1793.059952951 I0505 22:52:28.312530 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "nova-novncproxy-certs-rk9ml" condition "Ready" to 2026-05-05 22:52:28.312517786 +0000 UTC m=+1793.077872924 I0505 22:52:28.338403 1 conditions.go:192] Found status change for Certificate "nova-novncproxy-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 22:52:28.338383279 +0000 UTC m=+1793.103738437 I0505 22:52:28.362579 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/nova-novncproxy-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-novncproxy-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:52:28.363155 1 conditions.go:192] Found status change for Certificate "nova-novncproxy-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 22:52:28.363147258 +0000 UTC m=+1793.128502396 I0505 22:52:28.379448 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/nova-novncproxy-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-novncproxy-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:55:28.011225 1 conditions.go:203] Setting lastTransitionTime for Certificate "neutron-server-certs" condition "Ready" to 2026-05-05 22:55:28.011200702 +0000 UTC m=+1972.776555840 I0505 22:55:28.011235 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/neutron-server-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 22:55:28.011587 1 conditions.go:203] Setting lastTransitionTime for Certificate "neutron-server-certs" condition "Issuing" to 2026-05-05 22:55:28.01155698 +0000 UTC m=+1972.776912148 I0505 22:55:28.027854 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/neutron-server-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"neutron-server-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:55:28.028058 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/neutron-server-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 22:55:28.028092 1 conditions.go:203] Setting lastTransitionTime for Certificate "neutron-server-certs" condition "Issuing" to 2026-05-05 22:55:28.028080743 +0000 UTC m=+1972.793435911 I0505 22:55:28.292172 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "neutron-server-certs-q6q8j" condition "Approved" to 2026-05-05 22:55:28.292152751 +0000 UTC m=+1973.057507889 I0505 22:55:28.311691 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "neutron-server-certs-q6q8j" condition "Ready" to 2026-05-05 22:55:28.311677591 +0000 UTC m=+1973.077032719 I0505 22:55:28.344426 1 conditions.go:192] Found status change for Certificate "neutron-server-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 22:55:28.344402688 +0000 UTC m=+1973.109757826 I0505 22:55:28.370269 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/neutron-server-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"neutron-server-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:55:28.371322 1 conditions.go:192] Found status change for Certificate "neutron-server-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 22:55:28.371310433 +0000 UTC m=+1973.136665561 I0505 22:55:28.396136 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/neutron-server-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"neutron-server-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:56:15.171549 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/libvirt-libvirt-default-v2r4p-vnc" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 22:56:15.171586 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-libvirt-default-v2r4p-vnc" condition "Issuing" to 2026-05-05 22:56:15.171577601 +0000 UTC m=+2019.936932729 I0505 22:56:15.172035 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-libvirt-default-v2r4p-vnc" condition "Ready" to 2026-05-05 22:56:15.172030982 +0000 UTC m=+2019.937386110 I0505 22:56:15.174702 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/libvirt-libvirt-default-v2r4p-api" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 22:56:15.174741 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-libvirt-default-v2r4p-api" condition "Issuing" to 2026-05-05 22:56:15.174730923 +0000 UTC m=+2019.940086061 I0505 22:56:15.175410 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-libvirt-default-v2r4p-api" condition "Ready" to 2026-05-05 22:56:15.175382428 +0000 UTC m=+2019.940737606 I0505 22:56:15.200617 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/libvirt-libvirt-default-v2r4p-vnc" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-libvirt-default-v2r4p-vnc\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:56:15.200709 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-libvirt-default-v2r4p-vnc" condition "Ready" to 2026-05-05 22:56:15.200701048 +0000 UTC m=+2019.966056176 I0505 22:56:15.206487 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/libvirt-libvirt-default-v2r4p-api" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-libvirt-default-v2r4p-api\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:56:15.206590 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-libvirt-default-v2r4p-api" condition "Ready" to 2026-05-05 22:56:15.20657733 +0000 UTC m=+2019.971932498 I0505 22:56:15.529093 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/libvirt-libvirt-default-v2r4p-api" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-libvirt-default-v2r4p-api\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:56:15.529970 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/libvirt-libvirt-default-v2r4p-vnc" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-libvirt-default-v2r4p-vnc\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:56:15.582061 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-libvirt-default-v2r4p-api-vhlfl" condition "Approved" to 2026-05-05 22:56:15.582043268 +0000 UTC m=+2020.347398406 I0505 22:56:15.584612 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-libvirt-default-v2r4p-vnc-hbknl" condition "Approved" to 2026-05-05 22:56:15.584592135 +0000 UTC m=+2020.349947273 I0505 22:56:15.779450 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-libvirt-default-v2r4p-vnc-hbknl" condition "Ready" to 2026-05-05 22:56:15.779438414 +0000 UTC m=+2020.544793542 I0505 22:56:15.780878 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-libvirt-default-v2r4p-api-vhlfl" condition "Ready" to 2026-05-05 22:56:15.780863997 +0000 UTC m=+2020.546219135 I0505 22:56:15.862479 1 conditions.go:192] Found status change for Certificate "libvirt-libvirt-default-v2r4p-vnc" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 22:56:15.862461514 +0000 UTC m=+2020.627816652 I0505 22:56:15.944987 1 conditions.go:192] Found status change for Certificate "libvirt-libvirt-default-v2r4p-api" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 22:56:15.944965193 +0000 UTC m=+2020.710320351 I0505 22:56:15.998894 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/libvirt-libvirt-default-v2r4p-vnc" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-libvirt-default-v2r4p-vnc\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:56:15.999724 1 conditions.go:192] Found status change for Certificate "libvirt-libvirt-default-v2r4p-vnc" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 22:56:15.999713697 +0000 UTC m=+2020.765068855 I0505 22:56:16.001720 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/libvirt-libvirt-default-v2r4p-api" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-libvirt-default-v2r4p-api\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:56:16.002057 1 conditions.go:192] Found status change for Certificate "libvirt-libvirt-default-v2r4p-api" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 22:56:16.00205315 +0000 UTC m=+2020.767408288 I0505 22:56:16.027971 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/libvirt-libvirt-default-v2r4p-vnc" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-libvirt-default-v2r4p-vnc\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:56:16.055338 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="openstack/libvirt-libvirt-default-v2r4p-vnc" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-libvirt-default-v2r4p-vnc\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:56:16.055725 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/libvirt-libvirt-default-v2r4p-api" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-libvirt-default-v2r4p-api\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:58:23.062544 1 conditions.go:203] Setting lastTransitionTime for Certificate "senlin-api-certs" condition "Ready" to 2026-05-05 22:58:23.062521714 +0000 UTC m=+2147.827876882 I0505 22:58:23.063175 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/senlin-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 22:58:23.063205 1 conditions.go:203] Setting lastTransitionTime for Certificate "senlin-api-certs" condition "Issuing" to 2026-05-05 22:58:23.063199539 +0000 UTC m=+2147.828554707 I0505 22:58:23.083073 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/senlin-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"senlin-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:58:23.083131 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/senlin-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 22:58:23.083150 1 conditions.go:203] Setting lastTransitionTime for Certificate "senlin-api-certs" condition "Issuing" to 2026-05-05 22:58:23.083146025 +0000 UTC m=+2147.848501163 I0505 22:58:23.288586 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "senlin-api-certs-l8v95" condition "Approved" to 2026-05-05 22:58:23.288566546 +0000 UTC m=+2148.053921704 I0505 22:58:23.309083 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "senlin-api-certs-l8v95" condition "Ready" to 2026-05-05 22:58:23.309063594 +0000 UTC m=+2148.074418732 I0505 22:58:23.342199 1 conditions.go:192] Found status change for Certificate "senlin-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 22:58:23.342183724 +0000 UTC m=+2148.107538862 I0505 22:58:23.367567 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/senlin-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"senlin-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:58:23.368851 1 conditions.go:192] Found status change for Certificate "senlin-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 22:58:23.368831231 +0000 UTC m=+2148.134186399 I0505 22:58:23.392048 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/senlin-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"senlin-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 22:58:23.392647 1 conditions.go:192] Found status change for Certificate "senlin-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 22:58:23.392636772 +0000 UTC m=+2148.157991910 I0505 23:01:59.702950 1 conditions.go:203] Setting lastTransitionTime for Certificate "heat-api-certs" condition "Ready" to 2026-05-05 23:01:59.702916803 +0000 UTC m=+2364.468271941 I0505 23:01:59.703178 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/heat-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 23:01:59.703353 1 conditions.go:203] Setting lastTransitionTime for Certificate "heat-api-certs" condition "Issuing" to 2026-05-05 23:01:59.703332532 +0000 UTC m=+2364.468687690 I0505 23:01:59.720490 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/heat-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"heat-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 23:01:59.720664 1 conditions.go:203] Setting lastTransitionTime for Certificate "heat-api-certs" condition "Ready" to 2026-05-05 23:01:59.720653298 +0000 UTC m=+2364.486008436 I0505 23:01:59.923366 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/heat-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"heat-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 23:01:59.960312 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "heat-api-certs-nnnwj" condition "Approved" to 2026-05-05 23:01:59.960295262 +0000 UTC m=+2364.725650430 I0505 23:01:59.985511 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "heat-api-certs-nnnwj" condition "Ready" to 2026-05-05 23:01:59.985492614 +0000 UTC m=+2364.750847752 I0505 23:02:00.017872 1 conditions.go:192] Found status change for Certificate "heat-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 23:02:00.017845485 +0000 UTC m=+2364.783200613 I0505 23:02:00.036147 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/heat-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"heat-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 23:02:00.036719 1 conditions.go:192] Found status change for Certificate "heat-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 23:02:00.036711526 +0000 UTC m=+2364.802066664 I0505 23:02:00.049650 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="openstack/heat-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"heat-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 23:02:00.063618 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/heat-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"heat-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 23:02:00.067223 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/heat-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"heat-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 23:02:00.067680 1 conditions.go:192] Found status change for Certificate "heat-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 23:02:00.067671826 +0000 UTC m=+2364.833026954 I0505 23:02:01.213293 1 conditions.go:203] Setting lastTransitionTime for Certificate "heat-cfn-certs" condition "Ready" to 2026-05-05 23:02:01.213275581 +0000 UTC m=+2365.978630749 I0505 23:02:01.213278 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/heat-cfn-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 23:02:01.213495 1 conditions.go:203] Setting lastTransitionTime for Certificate "heat-cfn-certs" condition "Issuing" to 2026-05-05 23:02:01.213483986 +0000 UTC m=+2365.978839144 I0505 23:02:01.230643 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/heat-cfn-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"heat-cfn-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 23:02:01.230748 1 conditions.go:203] Setting lastTransitionTime for Certificate "heat-cfn-certs" condition "Ready" to 2026-05-05 23:02:01.230738141 +0000 UTC m=+2365.996093309 I0505 23:02:01.373112 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/heat-cfn-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"heat-cfn-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 23:02:01.404199 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "heat-cfn-certs-nn7s9" condition "Approved" to 2026-05-05 23:02:01.404182578 +0000 UTC m=+2366.169537716 I0505 23:02:01.422982 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "heat-cfn-certs-nn7s9" condition "Ready" to 2026-05-05 23:02:01.422968298 +0000 UTC m=+2366.188323436 I0505 23:02:01.448749 1 conditions.go:192] Found status change for Certificate "heat-cfn-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 23:02:01.448731982 +0000 UTC m=+2366.214087110 I0505 23:02:01.469438 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/heat-cfn-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"heat-cfn-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 23:02:01.470012 1 conditions.go:192] Found status change for Certificate "heat-cfn-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 23:02:01.469999947 +0000 UTC m=+2366.235355085 I0505 23:02:01.488297 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/heat-cfn-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"heat-cfn-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 23:04:39.843742 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/octavia-client-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 23:04:39.843774 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-client-ca" condition "Issuing" to 2026-05-05 23:04:39.843767203 +0000 UTC m=+2524.609122331 I0505 23:04:39.844302 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-client-ca" condition "Ready" to 2026-05-05 23:04:39.844296085 +0000 UTC m=+2524.609651223 I0505 23:04:39.863992 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/octavia-client-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-client-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 23:04:39.864040 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/octavia-client-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 23:04:39.864052 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-client-ca" condition "Issuing" to 2026-05-05 23:04:39.864048246 +0000 UTC m=+2524.629403384 E0505 23:04:39.864257 1 setup.go:48] "cert-manager/issuers/setup: error getting signing CA TLS certificate" err="secret \"octavia-client-ca\" not found" resource_name="octavia-client" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0505 23:04:39.864278 1 conditions.go:96] Setting lastTransitionTime for Issuer "octavia-client" condition "Ready" to 2026-05-05 23:04:39.864273712 +0000 UTC m=+2524.629628850 I0505 23:04:39.864307 1 sync.go:62] "cert-manager/issuers: Error initializing issuer: secret \"octavia-client-ca\" not found" resource_name="octavia-client" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0505 23:04:39.882517 1 controller.go:167] "cert-manager/issuers: re-queuing item due to error processing" err="secret \"octavia-client-ca\" not found" key="openstack/octavia-client" E0505 23:04:39.882646 1 setup.go:48] "cert-manager/issuers/setup: error getting signing CA TLS certificate" err="secret \"octavia-client-ca\" not found" resource_name="octavia-client" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0505 23:04:39.882679 1 sync.go:62] "cert-manager/issuers: Error initializing issuer: secret \"octavia-client-ca\" not found" resource_name="octavia-client" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0505 23:04:39.882834 1 controller.go:167] "cert-manager/issuers: re-queuing item due to error processing" err="secret \"octavia-client-ca\" not found" key="openstack/octavia-client" I0505 23:04:39.907574 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/octavia-client-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-client-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 23:04:39.914037 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-client-ca-mzxk7" condition "Approved" to 2026-05-05 23:04:39.914000773 +0000 UTC m=+2524.679355911 I0505 23:04:39.932765 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-client-ca-mzxk7" condition "Ready" to 2026-05-05 23:04:39.932752843 +0000 UTC m=+2524.698107971 I0505 23:04:39.962480 1 conditions.go:192] Found status change for Certificate "octavia-client-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 23:04:39.962465158 +0000 UTC m=+2524.727820296 I0505 23:04:39.988471 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/octavia-client-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-client-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 23:04:39.988873 1 conditions.go:192] Found status change for Certificate "octavia-client-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 23:04:39.988866757 +0000 UTC m=+2524.754221885 I0505 23:04:40.009206 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/octavia-client-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-client-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 23:04:40.010633 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/octavia-client-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-client-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 23:04:40.011007 1 conditions.go:192] Found status change for Certificate "octavia-client-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 23:04:40.010996892 +0000 UTC m=+2524.776352060 I0505 23:04:40.515478 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/octavia-server-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 23:04:40.515513 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-server-ca" condition "Issuing" to 2026-05-05 23:04:40.515504122 +0000 UTC m=+2525.280859260 I0505 23:04:40.515815 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-server-ca" condition "Ready" to 2026-05-05 23:04:40.515808939 +0000 UTC m=+2525.281164077 E0505 23:04:40.531004 1 setup.go:48] "cert-manager/issuers/setup: error getting signing CA TLS certificate" err="secret \"octavia-server-ca\" not found" resource_name="octavia-server" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0505 23:04:40.531045 1 conditions.go:96] Setting lastTransitionTime for Issuer "octavia-server" condition "Ready" to 2026-05-05 23:04:40.53103682 +0000 UTC m=+2525.296391958 I0505 23:04:40.531084 1 sync.go:62] "cert-manager/issuers: Error initializing issuer: secret \"octavia-server-ca\" not found" resource_name="octavia-server" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0505 23:04:40.533400 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/octavia-server-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-server-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 23:04:40.533509 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-server-ca" condition "Ready" to 2026-05-05 23:04:40.533494574 +0000 UTC m=+2525.298849752 E0505 23:04:40.541317 1 controller.go:167] "cert-manager/issuers: re-queuing item due to error processing" err="secret \"octavia-server-ca\" not found" key="openstack/octavia-server" E0505 23:04:40.541818 1 setup.go:48] "cert-manager/issuers/setup: error getting signing CA TLS certificate" err="secret \"octavia-server-ca\" not found" resource_name="octavia-server" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0505 23:04:40.541858 1 sync.go:62] "cert-manager/issuers: Error initializing issuer: secret \"octavia-server-ca\" not found" resource_name="octavia-server" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0505 23:04:40.541960 1 controller.go:167] "cert-manager/issuers: re-queuing item due to error processing" err="secret \"octavia-server-ca\" not found" key="openstack/octavia-server" I0505 23:04:40.547595 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/octavia-server-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-server-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 23:04:40.547737 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-server-ca" condition "Ready" to 2026-05-05 23:04:40.547670631 +0000 UTC m=+2525.313025769 I0505 23:04:40.559882 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-server-ca-clqcm" condition "Approved" to 2026-05-05 23:04:40.559871735 +0000 UTC m=+2525.325226873 I0505 23:04:40.573180 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-server-ca-clqcm" condition "Ready" to 2026-05-05 23:04:40.573167692 +0000 UTC m=+2525.338522820 I0505 23:04:40.599062 1 conditions.go:192] Found status change for Certificate "octavia-server-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 23:04:40.59904438 +0000 UTC m=+2525.364399518 I0505 23:04:40.617940 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="openstack/octavia-server-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-server-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 23:04:40.671529 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/octavia-server-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-server-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 23:04:41.281058 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-client-certs" condition "Ready" to 2026-05-05 23:04:41.281037529 +0000 UTC m=+2526.046392667 I0505 23:04:41.281459 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/octavia-client-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 23:04:41.281528 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-client-certs" condition "Issuing" to 2026-05-05 23:04:41.281515159 +0000 UTC m=+2526.046870317 I0505 23:04:41.298720 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/octavia-client-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-client-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 23:04:41.298945 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-client-certs" condition "Ready" to 2026-05-05 23:04:41.298932989 +0000 UTC m=+2526.064288157 I0505 23:04:41.319285 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/octavia-client-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-client-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 23:04:41.359712 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-client-certs-hjg4z" condition "Approved" to 2026-05-05 23:04:41.359699317 +0000 UTC m=+2526.125054455 I0505 23:04:41.373530 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-client-certs-hjg4z" condition "Ready" to 2026-05-05 23:04:41.373516796 +0000 UTC m=+2526.138871964 I0505 23:04:44.882927 1 conditions.go:85] Found status change for Issuer "octavia-client" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 23:04:44.882910353 +0000 UTC m=+2529.648265521 I0505 23:04:44.897094 1 conditions.go:252] Found status change for CertificateRequest "octavia-client-certs-hjg4z" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 23:04:44.897084539 +0000 UTC m=+2529.662439677 I0505 23:04:44.927161 1 conditions.go:192] Found status change for Certificate "octavia-client-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 23:04:44.927141702 +0000 UTC m=+2529.692496870 I0505 23:04:44.948627 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="openstack/octavia-client-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-client-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 23:04:45.006449 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/octavia-client-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-client-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 23:04:45.541928 1 conditions.go:85] Found status change for Issuer "octavia-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 23:04:45.541915577 +0000 UTC m=+2530.307270705 I0505 23:06:51.642545 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-api-certs" condition "Ready" to 2026-05-05 23:06:51.642515717 +0000 UTC m=+2656.407870875 I0505 23:06:51.642900 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/octavia-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 23:06:51.643135 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-api-certs" condition "Issuing" to 2026-05-05 23:06:51.64311691 +0000 UTC m=+2656.408472088 I0505 23:06:51.657872 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/octavia-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 23:06:51.657962 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/octavia-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 23:06:51.657983 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-api-certs" condition "Issuing" to 2026-05-05 23:06:51.657974133 +0000 UTC m=+2656.423329271 I0505 23:06:51.991237 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-api-certs-qdcpq" condition "Approved" to 2026-05-05 23:06:51.991226794 +0000 UTC m=+2656.756581922 I0505 23:06:52.017143 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-api-certs-qdcpq" condition "Ready" to 2026-05-05 23:06:52.017131283 +0000 UTC m=+2656.782486421 I0505 23:06:52.053392 1 conditions.go:192] Found status change for Certificate "octavia-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 23:06:52.053369483 +0000 UTC m=+2656.818724641 I0505 23:06:52.080267 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/octavia-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 23:06:52.080903 1 conditions.go:192] Found status change for Certificate "octavia-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 23:06:52.080896519 +0000 UTC m=+2656.846251657 I0505 23:06:52.103909 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/octavia-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 23:06:52.107452 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/octavia-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 23:06:52.108053 1 conditions.go:192] Found status change for Certificate "octavia-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 23:06:52.108043175 +0000 UTC m=+2656.873398303 I0505 23:07:37.663360 1 conditions.go:96] Setting lastTransitionTime for Issuer "test-selfsigned" condition "Ready" to 2026-05-05 23:07:37.663338073 +0000 UTC m=+2702.428693231 I0505 23:07:37.687286 1 conditions.go:203] Setting lastTransitionTime for Certificate "selfsigned-cert" condition "Ready" to 2026-05-05 23:07:37.687275202 +0000 UTC m=+2702.452630360 I0505 23:07:37.687309 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="cert-manager-test/selfsigned-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 23:07:37.687355 1 conditions.go:203] Setting lastTransitionTime for Certificate "selfsigned-cert" condition "Issuing" to 2026-05-05 23:07:37.687349004 +0000 UTC m=+2702.452704142 E0505 23:07:37.705013 1 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"selfsigned-cert.18acce0141e85ece", GenerateName:"", Namespace:"cert-manager-test", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Certificate", Namespace:"cert-manager-test", Name:"selfsigned-cert", UID:"0efe6822-747d-4862-a4e4-53f7459cc7a8", APIVersion:"cert-manager.io/v1", ResourceVersion:"26134", FieldPath:""}, Reason:"Issuing", Message:"Issuing certificate as Secret does not exist", Source:v1.EventSource{Component:"cert-manager-certificates-trigger", Host:""}, FirstTimestamp:time.Date(2026, time.May, 5, 23, 7, 37, 700540110, time.Local), LastTimestamp:time.Date(2026, time.May, 5, 23, 7, 37, 700540110, time.Local), Count:1, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "selfsigned-cert.18acce0141e85ece" is forbidden: unable to create new content in namespace cert-manager-test because it is being terminated' (will not retry!) I0505 23:07:37.707542 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="cert-manager-test/selfsigned-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"selfsigned-cert\": the object has been modified; please apply your changes to the latest version and try again" I0505 23:07:37.707599 1 conditions.go:203] Setting lastTransitionTime for Certificate "selfsigned-cert" condition "Ready" to 2026-05-05 23:07:37.707592689 +0000 UTC m=+2702.472947817 E0505 23:07:37.718573 1 controller.go:134] "cert-manager/issuers: issuer in work queue no longer exists" err="issuer.cert-manager.io \"test-selfsigned\" not found" I0505 23:07:37.779105 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-selfsigned-issuer" condition "Ready" to 2026-05-05 23:07:37.779086576 +0000 UTC m=+2702.544441724 I0505 23:07:37.799088 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="capi-system/capi-serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 23:07:37.799128 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Issuing" to 2026-05-05 23:07:37.799116887 +0000 UTC m=+2702.564472055 I0505 23:07:37.799574 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Ready" to 2026-05-05 23:07:37.799564617 +0000 UTC m=+2702.564919785 I0505 23:07:37.818174 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="capi-system/capi-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0505 23:07:37.818262 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="capi-system/capi-serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 23:07:37.818286 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Issuing" to 2026-05-05 23:07:37.818280077 +0000 UTC m=+2702.583635215 E0505 23:07:37.842104 1 controller.go:167] "cert-manager/certificates-key-manager: re-queuing item due to error processing" err="secrets \"selfsigned-cert-\" is forbidden: unable to create new content in namespace cert-manager-test because it is being terminated" key="cert-manager-test/selfsigned-cert" I0505 23:07:38.030658 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-serving-cert-qff69" condition "Approved" to 2026-05-05 23:07:38.030640422 +0000 UTC m=+2702.795995550 I0505 23:07:38.090611 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-serving-cert-qff69" condition "Ready" to 2026-05-05 23:07:38.090592371 +0000 UTC m=+2702.855947499 I0505 23:07:38.126935 1 conditions.go:192] Found status change for Certificate "capi-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 23:07:38.126924388 +0000 UTC m=+2702.892279516 I0505 23:07:38.149245 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="capi-system/capi-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0505 23:07:38.529643 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-kubeadm-bootstrap-selfsigned-issuer" condition "Ready" to 2026-05-05 23:07:38.529628422 +0000 UTC m=+2703.294983550 I0505 23:07:38.559142 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready" to 2026-05-05 23:07:38.559126376 +0000 UTC m=+2703.324481514 I0505 23:07:38.559213 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 23:07:38.559241 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Issuing" to 2026-05-05 23:07:38.559234118 +0000 UTC m=+2703.324589236 I0505 23:07:38.574778 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0505 23:07:38.574850 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready" to 2026-05-05 23:07:38.574841999 +0000 UTC m=+2703.340197157 I0505 23:07:38.919614 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0505 23:07:38.957199 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-bootstrap-serving-cert-8c2n5" condition "Approved" to 2026-05-05 23:07:38.957181577 +0000 UTC m=+2703.722536735 I0505 23:07:38.981454 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-bootstrap-serving-cert-8c2n5" condition "Ready" to 2026-05-05 23:07:38.981438362 +0000 UTC m=+2703.746793490 I0505 23:07:38.992766 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-kubeadm-control-plane-selfsigned-issuer" condition "Ready" to 2026-05-05 23:07:38.992747566 +0000 UTC m=+2703.758102694 I0505 23:07:39.016904 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 23:07:39.017167 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Issuing" to 2026-05-05 23:07:39.017155615 +0000 UTC m=+2703.782510783 I0505 23:07:39.019018 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready" to 2026-05-05 23:07:39.019011647 +0000 UTC m=+2703.784366785 I0505 23:07:39.032249 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 23:07:39.032233964 +0000 UTC m=+2703.797589082 I0505 23:07:39.040552 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0505 23:07:39.040630 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready" to 2026-05-05 23:07:39.040622383 +0000 UTC m=+2703.805977511 I0505 23:07:39.059324 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0505 23:07:39.059925 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 23:07:39.059915527 +0000 UTC m=+2703.825270665 I0505 23:07:39.087049 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0505 23:07:39.297328 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0505 23:07:39.347263 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-control-plane-serving-cert-n9b26" condition "Approved" to 2026-05-05 23:07:39.347245537 +0000 UTC m=+2704.112600655 I0505 23:07:39.377000 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-control-plane-serving-cert-n9b26" condition "Ready" to 2026-05-05 23:07:39.376984786 +0000 UTC m=+2704.142339934 I0505 23:07:39.428027 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 23:07:39.428012303 +0000 UTC m=+2704.193367421 I0505 23:07:39.451972 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0505 23:07:39.483146 1 conditions.go:96] Setting lastTransitionTime for Issuer "capo-selfsigned-issuer" condition "Ready" to 2026-05-05 23:07:39.483127793 +0000 UTC m=+2704.248482931 I0505 23:07:39.508629 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Ready" to 2026-05-05 23:07:39.508612056 +0000 UTC m=+2704.273967204 I0505 23:07:39.508714 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="capo-system/capo-serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 23:07:39.508756 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Issuing" to 2026-05-05 23:07:39.508739429 +0000 UTC m=+2704.274094557 I0505 23:07:39.733214 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="capo-system/capo-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0505 23:07:39.733336 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="capo-system/capo-serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 23:07:39.733361 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Issuing" to 2026-05-05 23:07:39.733353609 +0000 UTC m=+2704.498708767 I0505 23:07:40.405583 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capo-serving-cert-sxhwk" condition "Approved" to 2026-05-05 23:07:40.405566354 +0000 UTC m=+2705.170921492 I0505 23:07:40.454045 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capo-serving-cert-sxhwk" condition "Ready" to 2026-05-05 23:07:40.454028434 +0000 UTC m=+2705.219383602 I0505 23:07:40.626264 1 conditions.go:192] Found status change for Certificate "capo-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 23:07:40.626251577 +0000 UTC m=+2705.391606715 I0505 23:07:40.776376 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="capo-system/capo-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0505 23:07:40.776751 1 conditions.go:192] Found status change for Certificate "capo-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 23:07:40.77674497 +0000 UTC m=+2705.542100098 I0505 23:07:41.024864 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="capo-system/capo-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0505 23:07:41.074356 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="capo-system/capo-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0505 23:10:46.500683 1 conditions.go:203] Setting lastTransitionTime for Certificate "magnum-api-certs" condition "Ready" to 2026-05-05 23:10:46.500661731 +0000 UTC m=+2891.266016859 I0505 23:10:46.501140 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/magnum-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 23:10:46.501178 1 conditions.go:203] Setting lastTransitionTime for Certificate "magnum-api-certs" condition "Issuing" to 2026-05-05 23:10:46.501174912 +0000 UTC m=+2891.266530040 I0505 23:10:46.521247 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/magnum-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"magnum-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 23:10:46.521409 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/magnum-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 23:10:46.521437 1 conditions.go:203] Setting lastTransitionTime for Certificate "magnum-api-certs" condition "Issuing" to 2026-05-05 23:10:46.521431187 +0000 UTC m=+2891.286786315 I0505 23:10:46.737646 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "magnum-api-certs-vz5xs" condition "Approved" to 2026-05-05 23:10:46.737632819 +0000 UTC m=+2891.502987947 I0505 23:10:46.758035 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "magnum-api-certs-vz5xs" condition "Ready" to 2026-05-05 23:10:46.758015497 +0000 UTC m=+2891.523370665 I0505 23:10:46.789366 1 conditions.go:192] Found status change for Certificate "magnum-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 23:10:46.789354202 +0000 UTC m=+2891.554709340 I0505 23:10:46.817238 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/magnum-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"magnum-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 23:10:46.817723 1 conditions.go:192] Found status change for Certificate "magnum-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 23:10:46.81771773 +0000 UTC m=+2891.583072868 I0505 23:10:46.823435 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="openstack/magnum-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"magnum-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 23:10:46.834736 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/magnum-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"magnum-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 23:10:46.835300 1 conditions.go:192] Found status change for Certificate "magnum-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 23:10:46.835291015 +0000 UTC m=+2891.600646153 I0505 23:10:49.699852 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/magnum-registry-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 23:10:49.699887 1 conditions.go:203] Setting lastTransitionTime for Certificate "magnum-registry-certs" condition "Issuing" to 2026-05-05 23:10:49.699879697 +0000 UTC m=+2894.465234835 I0505 23:10:49.700199 1 conditions.go:203] Setting lastTransitionTime for Certificate "magnum-registry-certs" condition "Ready" to 2026-05-05 23:10:49.700180554 +0000 UTC m=+2894.465535722 I0505 23:10:49.734754 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/magnum-registry-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"magnum-registry-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 23:10:49.734895 1 conditions.go:203] Setting lastTransitionTime for Certificate "magnum-registry-certs" condition "Ready" to 2026-05-05 23:10:49.734880904 +0000 UTC m=+2894.500236062 I0505 23:10:50.161689 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/magnum-registry-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"magnum-registry-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 23:10:50.225141 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "magnum-registry-certs-gsjxq" condition "Approved" to 2026-05-05 23:10:50.225120327 +0000 UTC m=+2894.990475485 I0505 23:10:50.267488 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "magnum-registry-certs-gsjxq" condition "Ready" to 2026-05-05 23:10:50.26747333 +0000 UTC m=+2895.032828498 I0505 23:10:50.297810 1 conditions.go:192] Found status change for Certificate "magnum-registry-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 23:10:50.297795711 +0000 UTC m=+2895.063150849 I0505 23:10:50.323997 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/magnum-registry-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"magnum-registry-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 23:10:50.324540 1 conditions.go:192] Found status change for Certificate "magnum-registry-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 23:10:50.324532013 +0000 UTC m=+2895.089887151 I0505 23:10:50.342805 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/magnum-registry-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"magnum-registry-certs\": the object has been modified; please apply your changes to the latest version and try again" E0505 23:13:11.634178 1 leaderelection.go:327] error retrieving resource lock cert-manager/cert-manager-controller: Get "https://10.96.0.1:443/apis/coordination.k8s.io/v1/namespaces/cert-manager/leases/cert-manager-controller": dial tcp 10.96.0.1:443: i/o timeout I0505 23:13:21.633389 1 leaderelection.go:280] failed to renew lease cert-manager/cert-manager-controller: timed out waiting for the condition E0505 23:13:51.635881 1 leaderelection.go:303] Failed to release lock: Put "https://10.96.0.1:443/apis/coordination.k8s.io/v1/namespaces/cert-manager/leases/cert-manager-controller": dial tcp 10.96.0.1:443: i/o timeout I0505 23:13:51.636055 1 controller.go:127] "cert-manager/certificates-metrics: shutting down queue as workqueue signaled shutdown" I0505 23:13:51.636085 1 controller.go:127] "cert-manager/certificaterequests-approver: shutting down queue as workqueue signaled shutdown" I0505 23:13:51.636207 1 controller.go:127] "cert-manager/certificates-readiness: shutting down queue as workqueue signaled shutdown" I0505 23:13:51.636236 1 controller.go:127] "cert-manager/orders: shutting down queue as workqueue signaled shutdown" I0505 23:13:51.636253 1 controller.go:127] "cert-manager/certificates-trigger: shutting down queue as workqueue signaled shutdown" I0505 23:13:51.636287 1 controller.go:127] "cert-manager/certificates-issuing: shutting down queue as workqueue signaled shutdown" I0505 23:13:51.636345 1 controller.go:127] "cert-manager/ingress-shim: shutting down queue as workqueue signaled shutdown" I0505 23:13:51.636313 1 controller.go:127] "cert-manager/certificates-revision-manager: shutting down queue as workqueue signaled shutdown" I0505 23:13:51.636403 1 controller.go:127] "cert-manager/certificates-request-manager: shutting down queue as workqueue signaled shutdown" I0505 23:13:51.636439 1 controller.go:127] "cert-manager/certificaterequests-issuer-acme: shutting down queue as workqueue signaled shutdown" I0505 23:13:51.636462 1 controller.go:127] "cert-manager/certificates-key-manager: shutting down queue as workqueue signaled shutdown" I0505 23:13:51.636415 1 controller.go:127] "cert-manager/certificaterequests-issuer-vault: shutting down queue as workqueue signaled shutdown" I0505 23:13:51.636493 1 controller.go:127] "cert-manager/certificaterequests-issuer-ca: shutting down queue as workqueue signaled shutdown" I0505 23:13:51.636497 1 controller.go:127] "cert-manager/issuers: shutting down queue as workqueue signaled shutdown" I0505 23:13:51.636505 1 controller.go:127] "cert-manager/certificaterequests-issuer-venafi: shutting down queue as workqueue signaled shutdown" I0505 23:13:51.636404 1 controller.go:127] "cert-manager/clusterissuers: shutting down queue as workqueue signaled shutdown" I0505 23:13:51.636430 1 controller.go:127] "cert-manager/certificaterequests-issuer-selfsigned: shutting down queue as workqueue signaled shutdown" I0505 23:13:51.636366 1 controller.go:127] "cert-manager/challenges: shutting down queue as workqueue signaled shutdown" E0505 23:13:51.636754 1 main.go:35] "cert-manager: error executing command" err="error starting controller: leader election lost"