I0903 02:33:09.244802 1 controller.go:284] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0903 02:33:09.245106 1 client_config.go:659] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0903 02:33:09.249839 1 controller.go:89] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0903 02:33:09.249874 1 controller.go:435] "serving insecurely as tls certificate data not provided" logger="cert-manager.controller" I0903 02:33:09.249892 1 controller.go:102] "listening for insecure connections" logger="cert-manager.controller" address="0.0.0.0:9402" I0903 02:33:09.250839 1 controller.go:178] "starting leader election" logger="cert-manager.controller" I0903 02:33:09.250909 1 controller.go:171] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0903 02:33:09.250949 1 controller.go:127] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0903 02:33:09.254809 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0903 02:33:09.271144 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0903 02:33:09.279821 1 controller.go:225] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0903 02:33:09.279861 1 controller.go:225] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0903 02:33:09.279975 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0903 02:33:09.284043 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0903 02:33:09.287807 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="orders" I0903 02:33:09.291700 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0903 02:33:09.295543 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0903 02:33:09.301634 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0903 02:33:09.304372 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0903 02:33:09.306579 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0903 02:33:09.308684 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0903 02:33:09.310731 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="challenges" I0903 02:33:09.312788 1 controller.go:225] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0903 02:33:09.312808 1 controller.go:225] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0903 02:33:09.312813 1 controller.go:225] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0903 02:33:09.312884 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0903 02:33:09.315129 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0903 02:33:09.317454 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0903 02:33:09.325033 1 controller.go:225] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0903 02:33:09.325099 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0903 02:33:09.329644 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="issuers" I0903 02:33:09.333535 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0903 02:33:09.337459 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0903 02:33:09.341573 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0903 02:33:09.343887 1 reflector.go:359] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0903 02:33:09.344826 1 reflector.go:359] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0903 02:33:09.345216 1 reflector.go:359] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0903 02:33:09.345680 1 reflector.go:359] Caches populated for *v1.Ingress from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0903 02:33:09.347041 1 reflector.go:359] Caches populated for *v1.Secret from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0903 02:33:09.347346 1 reflector.go:359] Caches populated for *v1.Certificate from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0903 02:33:09.369542 1 reflector.go:359] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0903 02:33:09.391967 1 reflector.go:359] Caches populated for *v1.Issuer from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0903 02:33:09.407279 1 reflector.go:359] Caches populated for *v1.Order from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0903 02:33:09.431387 1 reflector.go:359] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0903 02:33:09.450619 1 reflector.go:359] Caches populated for *v1.Challenge from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0903 02:33:20.504858 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-09-03 02:33:20.504811668 +0000 UTC m=+11.300743743 I0903 02:33:21.165157 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-09-03 02:33:21.165147304 +0000 UTC m=+11.961079359 I0903 02:33:21.165185 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0903 02:33:21.165237 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-09-03 02:33:21.165231346 +0000 UTC m=+11.961163431 E0903 02:33:21.175374 1 setup.go:48] "error getting signing CA TLS certificate" err="secrets \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.controller.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0903 02:33:21.175449 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-09-03 02:33:21.175437927 +0000 UTC m=+11.971370012 E0903 02:33:21.175537 1 sync.go:62] "error setting up issuer" err="secrets \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.controller" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0903 02:33:21.177109 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0903 02:33:21.177198 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0903 02:33:21.177228 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-09-03 02:33:21.177221002 +0000 UTC m=+11.973153087 E0903 02:33:21.186332 1 controller.go:162] "re-queuing item due to error processing" err="secrets \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.controller" key="atmosphere" E0903 02:33:21.187158 1 setup.go:48] "error getting signing CA TLS certificate" err="secrets \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.controller.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0903 02:33:21.187236 1 sync.go:62] "error setting up issuer" err="secrets \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.controller" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0903 02:33:21.187297 1 controller.go:162] "re-queuing item due to error processing" err="secrets \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.controller" key="atmosphere" I0903 02:33:21.210055 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0903 02:33:21.224783 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-1" condition "Approved" to 2026-09-03 02:33:21.224773578 +0000 UTC m=+12.020705663 I0903 02:33:21.252555 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-1" condition "Ready" to 2026-09-03 02:33:21.252542432 +0000 UTC m=+12.048474487 I0903 02:33:21.278609 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-09-03 02:33:21.278600375 +0000 UTC m=+12.074532430 I0903 02:33:21.291397 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0903 02:33:21.292008 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-09-03 02:33:21.291995743 +0000 UTC m=+12.087927828 I0903 02:33:21.304966 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0903 02:33:21.308141 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0903 02:33:26.187039 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-09-03 02:33:26.187029814 +0000 UTC m=+16.982961859 I0903 02:33:47.818621 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-09-03 02:33:47.81860471 +0000 UTC m=+38.614536805 I0903 02:33:47.818821 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0903 02:33:47.818931 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-09-03 02:33:47.818918349 +0000 UTC m=+38.614850424 I0903 02:33:47.829532 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-09-03 02:33:47.829509332 +0000 UTC m=+38.625441387 I0903 02:33:47.834635 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0903 02:33:47.834760 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-09-03 02:33:47.834746431 +0000 UTC m=+38.630678516 I0903 02:33:48.045012 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0903 02:33:48.068563 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-1" condition "Approved" to 2026-09-03 02:33:48.068554353 +0000 UTC m=+38.864486398 I0903 02:33:48.094613 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-1" condition "Ready" to 2026-09-03 02:33:48.094602015 +0000 UTC m=+38.890534070 I0903 02:33:48.123786 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-09-03 02:33:48.123775212 +0000 UTC m=+38.919707267 I0903 02:33:48.139292 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0903 02:35:37.487851 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0903 02:35:37.487955 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-09-03 02:35:37.487906122 +0000 UTC m=+148.283838197 I0903 02:35:37.487975 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-09-03 02:35:37.487954073 +0000 UTC m=+148.283886158 E0903 02:35:37.499928 1 setup.go:48] "error getting signing CA TLS certificate" err="secrets \"valkey-ca\" not found" logger="cert-manager.controller.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0903 02:35:37.500032 1 conditions.go:96] Setting lastTransitionTime for Issuer "valkey" condition "Ready" to 2026-09-03 02:35:37.500023401 +0000 UTC m=+148.295955476 I0903 02:35:37.500079 1 sync.go:62] "Error initializing issuer: secrets \"valkey-ca\" not found" logger="cert-manager.controller" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0903 02:35:37.506893 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0903 02:35:37.506972 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0903 02:35:37.506994 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-09-03 02:35:37.506987834 +0000 UTC m=+148.302919919 E0903 02:35:37.507789 1 controller.go:162] "re-queuing item due to error processing" err="secrets \"valkey-ca\" not found" logger="cert-manager.controller" key="openstack/valkey" E0903 02:35:37.507892 1 setup.go:48] "error getting signing CA TLS certificate" err="secrets \"valkey-ca\" not found" logger="cert-manager.controller.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0903 02:35:37.507986 1 sync.go:62] "Error initializing issuer: secrets \"valkey-ca\" not found" logger="cert-manager.controller" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0903 02:35:37.508100 1 controller.go:162] "re-queuing item due to error processing" err="secrets \"valkey-ca\" not found" logger="cert-manager.controller" key="openstack/valkey" I0903 02:35:37.513544 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0903 02:35:37.513575 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-09-03 02:35:37.513568084 +0000 UTC m=+148.309500169 I0903 02:35:37.513579 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-09-03 02:35:37.513559834 +0000 UTC m=+148.309491919 I0903 02:35:37.528895 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0903 02:35:37.529011 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-09-03 02:35:37.528999494 +0000 UTC m=+148.324931589 I0903 02:35:37.707207 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0903 02:35:37.720123 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-1" condition "Approved" to 2026-09-03 02:35:37.720113802 +0000 UTC m=+148.516045847 I0903 02:35:37.737431 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-1" condition "Ready" to 2026-09-03 02:35:37.737415119 +0000 UTC m=+148.533347194 I0903 02:35:37.758253 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-09-03 02:35:37.758239314 +0000 UTC m=+148.554171389 I0903 02:35:37.769438 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0903 02:35:37.960021 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0903 02:35:37.988812 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-1" condition "Approved" to 2026-09-03 02:35:37.988799855 +0000 UTC m=+148.784731910 I0903 02:35:38.004085 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-1" condition "Ready" to 2026-09-03 02:35:38.004016599 +0000 UTC m=+148.799948714 I0903 02:35:42.508576 1 conditions.go:85] Found status change for Issuer "valkey" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-09-03 02:35:42.508567298 +0000 UTC m=+153.304499343 I0903 02:35:42.521605 1 conditions.go:252] Found status change for CertificateRequest "valkey-server-1" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-09-03 02:35:42.521596505 +0000 UTC m=+153.317528550 I0903 02:35:42.544712 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-09-03 02:35:42.5446991 +0000 UTC m=+153.340631175 I0903 02:35:42.557729 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0903 02:35:42.558513 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-09-03 02:35:42.55850197 +0000 UTC m=+153.354434055 I0903 02:35:42.572376 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0903 02:38:35.740298 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="auth-system/keycloak.162-253-55-15.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0903 02:38:35.740354 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.162-253-55-15.nip.io-tls" condition "Issuing" to 2026-09-03 02:38:35.740347862 +0000 UTC m=+326.536279907 I0903 02:38:35.740656 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.162-253-55-15.nip.io-tls" condition "Ready" to 2026-09-03 02:38:35.740152365 +0000 UTC m=+326.536084420 I0903 02:38:35.757013 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="auth-system/keycloak.162-253-55-15.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.162-253-55-15.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0903 02:38:35.757066 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.162-253-55-15.nip.io-tls" condition "Ready" to 2026-09-03 02:38:35.757061891 +0000 UTC m=+326.552993936 I0903 02:38:35.884822 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="auth-system/keycloak.162-253-55-15.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.162-253-55-15.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0903 02:38:35.927281 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.162-253-55-15.nip.io-tls-1" condition "Approved" to 2026-09-03 02:38:35.92726344 +0000 UTC m=+326.723195525 I0903 02:38:35.948311 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.162-253-55-15.nip.io-tls-1" condition "Ready" to 2026-09-03 02:38:35.94829671 +0000 UTC m=+326.744228785 I0903 02:38:35.973586 1 conditions.go:192] Found status change for Certificate "keycloak.162-253-55-15.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-09-03 02:38:35.973572899 +0000 UTC m=+326.769504974 I0903 02:38:35.995004 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="auth-system/keycloak.162-253-55-15.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.162-253-55-15.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0903 02:38:35.995705 1 conditions.go:192] Found status change for Certificate "keycloak.162-253-55-15.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-09-03 02:38:35.995694992 +0000 UTC m=+326.791627077 I0903 02:38:36.001170 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="auth-system/keycloak.162-253-55-15.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.162-253-55-15.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0903 02:38:36.008687 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="auth-system/keycloak.162-253-55-15.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.162-253-55-15.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0903 02:38:36.009284 1 conditions.go:192] Found status change for Certificate "keycloak.162-253-55-15.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-09-03 02:38:36.009274496 +0000 UTC m=+326.805206581 I0903 02:39:48.835152 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-09-03 02:39:48.835111138 +0000 UTC m=+399.631043213 I0903 02:39:48.835207 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0903 02:39:48.835273 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-09-03 02:39:48.835266562 +0000 UTC m=+399.631198607 E0903 02:39:48.845293 1 setup.go:48] "error getting signing CA TLS certificate" err="secrets \"kube-prometheus-stack-ca\" not found" logger="cert-manager.controller.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0903 02:39:48.845415 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-09-03 02:39:48.845406651 +0000 UTC m=+399.641338706 E0903 02:39:48.845461 1 sync.go:62] "error setting up issuer" err="secrets \"kube-prometheus-stack-ca\" not found" logger="cert-manager.controller" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0903 02:39:48.846459 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0903 02:39:48.846561 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0903 02:39:48.846596 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-09-03 02:39:48.846585827 +0000 UTC m=+399.642517912 E0903 02:39:48.858709 1 controller.go:162] "re-queuing item due to error processing" err="secrets \"kube-prometheus-stack-ca\" not found" logger="cert-manager.controller" key="kube-prometheus-stack" E0903 02:39:48.859051 1 setup.go:48] "error getting signing CA TLS certificate" err="secrets \"kube-prometheus-stack-ca\" not found" logger="cert-manager.controller.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0903 02:39:48.859094 1 sync.go:62] "error setting up issuer" err="secrets \"kube-prometheus-stack-ca\" not found" logger="cert-manager.controller" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0903 02:39:48.859132 1 controller.go:162] "re-queuing item due to error processing" err="secrets \"kube-prometheus-stack-ca\" not found" logger="cert-manager.controller" key="kube-prometheus-stack" I0903 02:39:48.883512 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-1" condition "Approved" to 2026-09-03 02:39:48.883498261 +0000 UTC m=+399.679430336 I0903 02:39:48.898207 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-1" condition "Ready" to 2026-09-03 02:39:48.89819833 +0000 UTC m=+399.694130385 I0903 02:39:48.915160 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-09-03 02:39:48.915088204 +0000 UTC m=+399.711020289 I0903 02:39:48.929899 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0903 02:39:48.930479 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-09-03 02:39:48.930466443 +0000 UTC m=+399.726398528 I0903 02:39:48.946208 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0903 02:39:53.859535 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-09-03 02:39:53.859526718 +0000 UTC m=+404.655458763 I0903 02:40:32.726075 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0903 02:40:32.726120 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-09-03 02:40:32.726110582 +0000 UTC m=+443.522042647 I0903 02:40:32.726478 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-09-03 02:40:32.726463953 +0000 UTC m=+443.522396018 I0903 02:40:32.728983 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0903 02:40:32.729018 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-09-03 02:40:32.729012191 +0000 UTC m=+443.524944256 I0903 02:40:32.729179 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-09-03 02:40:32.729160585 +0000 UTC m=+443.525092650 I0903 02:40:32.739914 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0903 02:40:32.739948 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-09-03 02:40:32.739942174 +0000 UTC m=+443.535874229 I0903 02:40:32.740207 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-09-03 02:40:32.740202152 +0000 UTC m=+443.536134217 I0903 02:40:32.756582 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0903 02:40:32.756645 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-09-03 02:40:32.756637253 +0000 UTC m=+443.552569298 I0903 02:40:32.762041 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0903 02:40:32.762146 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0903 02:40:32.762195 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-09-03 02:40:32.762185952 +0000 UTC m=+443.558118017 I0903 02:40:32.762693 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0903 02:40:32.762765 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-09-03 02:40:32.762760249 +0000 UTC m=+443.558692304 I0903 02:40:32.847833 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0903 02:40:32.851263 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0903 02:40:32.871897 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-1" condition "Approved" to 2026-09-03 02:40:32.871882074 +0000 UTC m=+443.667814139 I0903 02:40:32.875352 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-1" condition "Approved" to 2026-09-03 02:40:32.87533959 +0000 UTC m=+443.671271635 I0903 02:40:32.887436 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-1" condition "Ready" to 2026-09-03 02:40:32.887418917 +0000 UTC m=+443.683350972 I0903 02:40:32.889742 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-1" condition "Ready" to 2026-09-03 02:40:32.889718758 +0000 UTC m=+443.685650833 I0903 02:40:32.914811 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-09-03 02:40:32.914800762 +0000 UTC m=+443.710732847 I0903 02:40:32.915702 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-09-03 02:40:32.915691489 +0000 UTC m=+443.711623544 I0903 02:40:32.933547 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0903 02:40:32.934089 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-09-03 02:40:32.934079249 +0000 UTC m=+443.730011304 I0903 02:40:32.937197 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0903 02:40:32.937967 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-09-03 02:40:32.937925737 +0000 UTC m=+443.733857812 I0903 02:40:33.426053 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0903 02:40:33.472961 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0903 02:40:33.523638 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0903 02:40:33.575737 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0903 02:40:33.822125 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0903 02:40:33.889523 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-1" condition "Approved" to 2026-09-03 02:40:33.889509543 +0000 UTC m=+444.685441618 I0903 02:40:33.985588 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-1" condition "Ready" to 2026-09-03 02:40:33.985575169 +0000 UTC m=+444.781507224 I0903 02:40:34.426882 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-09-03 02:40:34.426863467 +0000 UTC m=+445.222795552 I0903 02:40:34.522575 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0903 02:40:34.523510 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-09-03 02:40:34.523484961 +0000 UTC m=+445.319417036 I0903 02:40:34.770640 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0903 02:40:34.822922 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0903 02:40:41.270817 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-twqs5-tls" condition "Ready" to 2026-09-03 02:40:41.27076692 +0000 UTC m=+452.066698995 I0903 02:40:41.271180 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-twqs5-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0903 02:40:41.271226 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-twqs5-tls" condition "Issuing" to 2026-09-03 02:40:41.271218613 +0000 UTC m=+452.067150658 I0903 02:40:41.284276 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-twqs5-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-twqs5-tls\": the object has been modified; please apply your changes to the latest version and try again" I0903 02:40:41.284438 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-twqs5-tls" condition "Ready" to 2026-09-03 02:40:41.284430015 +0000 UTC m=+452.080362090 I0903 02:40:41.393992 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-twqs5-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-twqs5-tls\": the object has been modified; please apply your changes to the latest version and try again" I0903 02:40:41.419022 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-twqs5-tls-1" condition "Approved" to 2026-09-03 02:40:41.419007716 +0000 UTC m=+452.214939791 I0903 02:40:41.434903 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-twqs5-tls-1" condition "Ready" to 2026-09-03 02:40:41.43488481 +0000 UTC m=+452.230816885 I0903 02:40:41.471402 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-twqs5-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-09-03 02:40:41.471386913 +0000 UTC m=+452.267318988 I0903 02:40:41.489116 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-twqs5-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-twqs5-tls\": the object has been modified; please apply your changes to the latest version and try again" I0903 02:40:41.489680 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-twqs5-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-09-03 02:40:41.489672539 +0000 UTC m=+452.285604584 I0903 02:40:41.508114 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-twqs5-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-twqs5-tls\": the object has been modified; please apply your changes to the latest version and try again" I0903 02:40:41.515060 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-twqs5-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-twqs5-tls\": the object has been modified; please apply your changes to the latest version and try again" I0903 02:41:10.699719 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-09-03 02:41:10.699702056 +0000 UTC m=+481.495634101 I0903 02:41:10.699824 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0903 02:41:10.699880 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-09-03 02:41:10.699867191 +0000 UTC m=+481.495799266 I0903 02:41:10.710247 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0903 02:41:10.710437 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0903 02:41:10.710500 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-09-03 02:41:10.710490295 +0000 UTC m=+481.506422350 I0903 02:41:10.939913 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-1" condition "Approved" to 2026-09-03 02:41:10.939901376 +0000 UTC m=+481.735833431 I0903 02:41:10.957284 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-1" condition "Ready" to 2026-09-03 02:41:10.957272385 +0000 UTC m=+481.753204430 I0903 02:41:10.979361 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-09-03 02:41:10.979349598 +0000 UTC m=+481.775281643 I0903 02:41:10.992558 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0903 02:41:10.993186 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-09-03 02:41:10.993179559 +0000 UTC m=+481.789111614 I0903 02:41:11.007576 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0903 02:44:33.908072 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0903 02:44:33.908134 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-09-03 02:44:33.908112498 +0000 UTC m=+684.704044543 I0903 02:44:33.908136 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-09-03 02:44:33.908099667 +0000 UTC m=+684.704031752 I0903 02:44:33.921540 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0903 02:44:33.921643 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0903 02:44:33.921678 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-09-03 02:44:33.921669851 +0000 UTC m=+684.717601906 I0903 02:44:34.044541 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-1" condition "Approved" to 2026-09-03 02:44:34.044529349 +0000 UTC m=+684.840461404 I0903 02:44:34.061948 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-1" condition "Ready" to 2026-09-03 02:44:34.061938249 +0000 UTC m=+684.857870294 I0903 02:44:34.084058 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-09-03 02:44:34.084045844 +0000 UTC m=+684.879977899 I0903 02:44:34.098510 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0903 02:44:34.099068 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-09-03 02:44:34.099061772 +0000 UTC m=+684.894993827 I0903 02:44:34.113650 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0903 02:47:08.595274 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0903 02:47:08.595321 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-09-03 02:47:08.595315106 +0000 UTC m=+839.391247171 I0903 02:47:08.595274 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-09-03 02:47:08.59512131 +0000 UTC m=+839.391053365 I0903 02:47:08.607897 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0903 02:47:08.607958 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-09-03 02:47:08.607953471 +0000 UTC m=+839.403885526 I0903 02:47:08.929301 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0903 02:47:08.971690 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-1" condition "Approved" to 2026-09-03 02:47:08.971675945 +0000 UTC m=+839.767608030 I0903 02:47:08.993272 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-1" condition "Ready" to 2026-09-03 02:47:08.993261935 +0000 UTC m=+839.789193980 I0903 02:47:09.016795 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-09-03 02:47:09.016786031 +0000 UTC m=+839.812718086 I0903 02:47:09.036030 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0903 02:48:26.092632 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0903 02:48:26.092730 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-09-03 02:48:26.092689683 +0000 UTC m=+916.888621758 I0903 02:48:26.093148 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-09-03 02:48:26.093139447 +0000 UTC m=+916.889071532 I0903 02:48:26.106680 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0903 02:48:26.106768 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0903 02:48:26.106834 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-09-03 02:48:26.106827814 +0000 UTC m=+916.902759899 I0903 02:48:26.414884 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-1" condition "Approved" to 2026-09-03 02:48:26.41486988 +0000 UTC m=+917.210801965 I0903 02:48:26.432702 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-1" condition "Ready" to 2026-09-03 02:48:26.432688494 +0000 UTC m=+917.228620579 I0903 02:48:26.463138 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-09-03 02:48:26.46305715 +0000 UTC m=+917.258989215 I0903 02:48:26.485637 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0903 02:48:26.486290 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-09-03 02:48:26.486283488 +0000 UTC m=+917.282215543 I0903 02:48:26.490825 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0903 02:48:26.511261 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0903 02:51:42.814587 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-09-03 02:51:42.814535811 +0000 UTC m=+1113.610467906 I0903 02:51:42.814771 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0903 02:51:42.814978 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-09-03 02:51:42.814967574 +0000 UTC m=+1113.610899649 I0903 02:51:42.827193 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0903 02:51:42.827373 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-09-03 02:51:42.827362452 +0000 UTC m=+1113.623294577 I0903 02:51:42.921208 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0903 02:51:42.974077 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-1" condition "Approved" to 2026-09-03 02:51:42.974067553 +0000 UTC m=+1113.769999608 I0903 02:51:42.990392 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-1" condition "Ready" to 2026-09-03 02:51:42.990383051 +0000 UTC m=+1113.786315116 I0903 02:51:43.011512 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-09-03 02:51:43.011501744 +0000 UTC m=+1113.807433799 I0903 02:51:43.022151 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0903 02:51:43.022634 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-09-03 02:51:43.022630203 +0000 UTC m=+1113.818562258 I0903 02:51:43.039163 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0903 02:51:43.044879 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0903 02:59:44.275562 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/cinder-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0903 02:59:44.275655 1 conditions.go:203] Setting lastTransitionTime for Certificate "cinder-api-certs" condition "Issuing" to 2026-09-03 02:59:44.275626774 +0000 UTC m=+1595.071558849 I0903 02:59:44.275840 1 conditions.go:203] Setting lastTransitionTime for Certificate "cinder-api-certs" condition "Ready" to 2026-09-03 02:59:44.27582805 +0000 UTC m=+1595.071760125 I0903 02:59:44.291726 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/cinder-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"cinder-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0903 02:59:44.291829 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/cinder-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0903 02:59:44.291875 1 conditions.go:203] Setting lastTransitionTime for Certificate "cinder-api-certs" condition "Issuing" to 2026-09-03 02:59:44.291850188 +0000 UTC m=+1595.087782263 I0903 02:59:44.466384 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "cinder-api-certs-1" condition "Approved" to 2026-09-03 02:59:44.466367626 +0000 UTC m=+1595.262299711 I0903 02:59:44.485710 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "cinder-api-certs-1" condition "Ready" to 2026-09-03 02:59:44.485695445 +0000 UTC m=+1595.281627530 I0903 02:59:44.516237 1 conditions.go:192] Found status change for Certificate "cinder-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-09-03 02:59:44.516223515 +0000 UTC m=+1595.312155590 I0903 02:59:44.537154 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/cinder-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"cinder-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0903 02:59:44.537895 1 conditions.go:192] Found status change for Certificate "cinder-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-09-03 02:59:44.537885935 +0000 UTC m=+1595.333818020 I0903 02:59:44.556554 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/cinder-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"cinder-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0903 02:59:44.556712 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/cinder-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"cinder-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0903 02:59:44.557400 1 conditions.go:192] Found status change for Certificate "cinder-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-09-03 02:59:44.55739065 +0000 UTC m=+1595.353322735 I0903 03:01:33.576910 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/placement-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0903 03:01:33.577173 1 conditions.go:203] Setting lastTransitionTime for Certificate "placement-api-certs" condition "Ready" to 2026-09-03 03:01:33.577165244 +0000 UTC m=+1704.373097309 I0903 03:01:33.577173 1 conditions.go:203] Setting lastTransitionTime for Certificate "placement-api-certs" condition "Issuing" to 2026-09-03 03:01:33.577130023 +0000 UTC m=+1704.373062088 I0903 03:01:33.592350 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/placement-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"placement-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0903 03:01:33.592600 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/placement-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0903 03:01:33.592676 1 conditions.go:203] Setting lastTransitionTime for Certificate "placement-api-certs" condition "Issuing" to 2026-09-03 03:01:33.592666426 +0000 UTC m=+1704.388598501 I0903 03:01:33.743723 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/placement-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"placement-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0903 03:01:33.764838 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "placement-api-certs-1" condition "Approved" to 2026-09-03 03:01:33.764817192 +0000 UTC m=+1704.560749237 I0903 03:01:33.782190 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "placement-api-certs-1" condition "Ready" to 2026-09-03 03:01:33.78217836 +0000 UTC m=+1704.578110405 I0903 03:01:33.807353 1 conditions.go:192] Found status change for Certificate "placement-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-09-03 03:01:33.807291416 +0000 UTC m=+1704.603223451 I0903 03:01:33.824222 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/placement-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"placement-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0903 03:01:33.824536 1 conditions.go:192] Found status change for Certificate "placement-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-09-03 03:01:33.824528391 +0000 UTC m=+1704.620460446 I0903 03:01:33.851017 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/placement-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"placement-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0903 03:02:42.214056 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/libvirt-vnc-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0903 03:02:42.214094 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-vnc-ca" condition "Issuing" to 2026-09-03 03:02:42.214086049 +0000 UTC m=+1773.010018094 I0903 03:02:42.214084 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-vnc-ca" condition "Ready" to 2026-09-03 03:02:42.214066058 +0000 UTC m=+1773.009998133 I0903 03:02:42.222261 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/libvirt-vnc-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-vnc-ca\": the object has been modified; please apply your changes to the latest version and try again" I0903 03:02:42.222989 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-vnc-ca" condition "Ready" to 2026-09-03 03:02:42.222979249 +0000 UTC m=+1773.018911324 I0903 03:02:42.239336 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/libvirt-vnc-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-vnc-ca\": the object has been modified; please apply your changes to the latest version and try again" I0903 03:02:42.272237 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-vnc-ca-1" condition "Approved" to 2026-09-03 03:02:42.27222212 +0000 UTC m=+1773.068154235 I0903 03:02:42.290935 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-vnc-ca-1" condition "Ready" to 2026-09-03 03:02:42.29092411 +0000 UTC m=+1773.086856185 I0903 03:02:42.318252 1 conditions.go:192] Found status change for Certificate "libvirt-vnc-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-09-03 03:02:42.318237892 +0000 UTC m=+1773.114169977 I0903 03:02:42.336834 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/libvirt-vnc-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-vnc-ca\": the object has been modified; please apply your changes to the latest version and try again" I0903 03:02:42.337341 1 conditions.go:192] Found status change for Certificate "libvirt-vnc-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-09-03 03:02:42.337332814 +0000 UTC m=+1773.133264899 I0903 03:02:42.356019 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/libvirt-vnc-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-vnc-ca\": the object has been modified; please apply your changes to the latest version and try again" I0903 03:02:42.357332 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/libvirt-vnc-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-vnc-ca\": the object has been modified; please apply your changes to the latest version and try again" I0903 03:02:42.848973 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-api-ca" condition "Ready" to 2026-09-03 03:02:42.848958024 +0000 UTC m=+1773.644890079 I0903 03:02:42.849332 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/libvirt-api-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0903 03:02:42.849380 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-api-ca" condition "Issuing" to 2026-09-03 03:02:42.849369517 +0000 UTC m=+1773.645301592 I0903 03:02:42.861488 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/libvirt-api-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-api-ca\": the object has been modified; please apply your changes to the latest version and try again" I0903 03:02:42.861621 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/libvirt-api-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0903 03:02:42.861658 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-api-ca" condition "Issuing" to 2026-09-03 03:02:42.86164865 +0000 UTC m=+1773.657580725 I0903 03:02:42.910464 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-api-ca-1" condition "Approved" to 2026-09-03 03:02:42.910445408 +0000 UTC m=+1773.706377483 I0903 03:02:42.930521 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-api-ca-1" condition "Ready" to 2026-09-03 03:02:42.93051002 +0000 UTC m=+1773.726442075 I0903 03:02:42.960424 1 conditions.go:192] Found status change for Certificate "libvirt-api-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-09-03 03:02:42.96040433 +0000 UTC m=+1773.756336415 I0903 03:02:42.979041 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/libvirt-api-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-api-ca\": the object has been modified; please apply your changes to the latest version and try again" I0903 03:02:42.979387 1 conditions.go:192] Found status change for Certificate "libvirt-api-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-09-03 03:02:42.979379438 +0000 UTC m=+1773.775311503 I0903 03:02:43.008776 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/libvirt-api-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-api-ca\": the object has been modified; please apply your changes to the latest version and try again" I0903 03:02:43.014323 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/libvirt-api-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-api-ca\": the object has been modified; please apply your changes to the latest version and try again" I0903 03:02:43.574399 1 conditions.go:96] Setting lastTransitionTime for Issuer "libvirt-vnc" condition "Ready" to 2026-09-03 03:02:43.574389099 +0000 UTC m=+1774.370321154 I0903 03:02:44.222555 1 conditions.go:96] Setting lastTransitionTime for Issuer "libvirt-api" condition "Ready" to 2026-09-03 03:02:44.222542959 +0000 UTC m=+1775.018475034 I0903 03:03:30.211884 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/nova-novncproxy-vencrypt" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0903 03:03:30.211944 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-novncproxy-vencrypt" condition "Issuing" to 2026-09-03 03:03:30.211911768 +0000 UTC m=+1821.007843833 I0903 03:03:30.213645 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-novncproxy-vencrypt" condition "Ready" to 2026-09-03 03:03:30.213599861 +0000 UTC m=+1821.009531976 I0903 03:03:30.240787 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/nova-novncproxy-vencrypt" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-novncproxy-vencrypt\": the object has been modified; please apply your changes to the latest version and try again" I0903 03:03:30.241169 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-novncproxy-vencrypt" condition "Ready" to 2026-09-03 03:03:30.241153639 +0000 UTC m=+1821.037085684 I0903 03:03:31.977724 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/nova-novncproxy-vencrypt" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-novncproxy-vencrypt\": the object has been modified; please apply your changes to the latest version and try again" I0903 03:03:32.023267 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "nova-novncproxy-vencrypt-1" condition "Approved" to 2026-09-03 03:03:32.023250493 +0000 UTC m=+1822.819182578 I0903 03:03:32.043419 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "nova-novncproxy-vencrypt-1" condition "Ready" to 2026-09-03 03:03:32.043408397 +0000 UTC m=+1822.839340442 I0903 03:03:32.075736 1 conditions.go:192] Found status change for Certificate "nova-novncproxy-vencrypt" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-09-03 03:03:32.075720863 +0000 UTC m=+1822.871652928 I0903 03:03:32.087897 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/nova-novncproxy-vencrypt" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-novncproxy-vencrypt\": the object has been modified; please apply your changes to the latest version and try again" I0903 03:03:32.119534 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/nova-novncproxy-vencrypt" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-novncproxy-vencrypt\": the object has been modified; please apply your changes to the latest version and try again" I0903 03:06:24.950723 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/nova-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0903 03:06:24.950790 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-api-certs" condition "Issuing" to 2026-09-03 03:06:24.950781068 +0000 UTC m=+1995.746713153 I0903 03:06:24.950782 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-api-certs" condition "Ready" to 2026-09-03 03:06:24.950765338 +0000 UTC m=+1995.746697413 I0903 03:06:24.966557 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/nova-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0903 03:06:24.966644 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/nova-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0903 03:06:24.966667 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-api-certs" condition "Issuing" to 2026-09-03 03:06:24.966658051 +0000 UTC m=+1995.762590136 I0903 03:06:25.089150 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/nova-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0903 03:06:25.109081 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "nova-api-certs-1" condition "Approved" to 2026-09-03 03:06:25.10906714 +0000 UTC m=+1995.904999215 I0903 03:06:25.127752 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "nova-api-certs-1" condition "Ready" to 2026-09-03 03:06:25.127740408 +0000 UTC m=+1995.923672483 I0903 03:06:25.151869 1 conditions.go:192] Found status change for Certificate "nova-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-09-03 03:06:25.151835091 +0000 UTC m=+1995.947767146 I0903 03:06:25.166678 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/nova-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0903 03:06:25.167541 1 conditions.go:192] Found status change for Certificate "nova-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-09-03 03:06:25.16752951 +0000 UTC m=+1995.963461585 I0903 03:06:25.188192 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/nova-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0903 03:06:25.206955 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/nova-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0903 03:06:26.575395 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-novncproxy-certs" condition "Ready" to 2026-09-03 03:06:26.575374151 +0000 UTC m=+1997.371306236 I0903 03:06:26.575459 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/nova-novncproxy-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0903 03:06:26.575502 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-novncproxy-certs" condition "Issuing" to 2026-09-03 03:06:26.575490454 +0000 UTC m=+1997.371422529 I0903 03:06:26.587924 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/nova-novncproxy-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-novncproxy-certs\": the object has been modified; please apply your changes to the latest version and try again" I0903 03:06:26.588033 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/nova-novncproxy-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0903 03:06:26.588071 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-novncproxy-certs" condition "Issuing" to 2026-09-03 03:06:26.588061617 +0000 UTC m=+1997.383993702 I0903 03:06:26.768142 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/nova-novncproxy-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-novncproxy-certs\": the object has been modified; please apply your changes to the latest version and try again" I0903 03:06:26.781170 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "nova-novncproxy-certs-1" condition "Approved" to 2026-09-03 03:06:26.781158799 +0000 UTC m=+1997.577090854 I0903 03:06:26.804406 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "nova-novncproxy-certs-1" condition "Ready" to 2026-09-03 03:06:26.804395146 +0000 UTC m=+1997.600327201 I0903 03:06:26.832703 1 conditions.go:192] Found status change for Certificate "nova-novncproxy-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-09-03 03:06:26.832689979 +0000 UTC m=+1997.628622034 I0903 03:06:26.850113 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/nova-novncproxy-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-novncproxy-certs\": the object has been modified; please apply your changes to the latest version and try again" I0903 03:06:26.859724 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/nova-novncproxy-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-novncproxy-certs\": the object has been modified; please apply your changes to the latest version and try again" I0903 03:10:06.195884 1 conditions.go:203] Setting lastTransitionTime for Certificate "neutron-server-certs" condition "Ready" to 2026-09-03 03:10:06.195735871 +0000 UTC m=+2216.991667916 I0903 03:10:06.196818 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/neutron-server-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0903 03:10:06.196916 1 conditions.go:203] Setting lastTransitionTime for Certificate "neutron-server-certs" condition "Issuing" to 2026-09-03 03:10:06.196906457 +0000 UTC m=+2216.992838512 I0903 03:10:06.221139 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/neutron-server-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"neutron-server-certs\": the object has been modified; please apply your changes to the latest version and try again" I0903 03:10:06.221351 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/neutron-server-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0903 03:10:06.221406 1 conditions.go:203] Setting lastTransitionTime for Certificate "neutron-server-certs" condition "Issuing" to 2026-09-03 03:10:06.221391062 +0000 UTC m=+2217.017323137 I0903 03:10:06.353232 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "neutron-server-certs-1" condition "Approved" to 2026-09-03 03:10:06.353214467 +0000 UTC m=+2217.149146552 I0903 03:10:06.373651 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "neutron-server-certs-1" condition "Ready" to 2026-09-03 03:10:06.373625779 +0000 UTC m=+2217.169557884 I0903 03:10:06.403539 1 conditions.go:192] Found status change for Certificate "neutron-server-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-09-03 03:10:06.40352326 +0000 UTC m=+2217.199455315 I0903 03:10:06.429685 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/neutron-server-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"neutron-server-certs\": the object has been modified; please apply your changes to the latest version and try again" I0903 03:10:06.499831 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/neutron-server-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"neutron-server-certs\": the object has been modified; please apply your changes to the latest version and try again" I0903 03:10:12.013794 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-libvirt-default-r6fxt-vnc" condition "Ready" to 2026-09-03 03:10:12.01378064 +0000 UTC m=+2222.809712695 I0903 03:10:12.014255 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/libvirt-libvirt-default-r6fxt-vnc" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0903 03:10:12.014287 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-libvirt-default-r6fxt-vnc" condition "Issuing" to 2026-09-03 03:10:12.014284045 +0000 UTC m=+2222.810216100 I0903 03:10:12.014964 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/libvirt-libvirt-default-r6fxt-api" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0903 03:10:12.014976 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-libvirt-default-r6fxt-api" condition "Issuing" to 2026-09-03 03:10:12.014972786 +0000 UTC m=+2222.810904831 I0903 03:10:12.015166 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-libvirt-default-r6fxt-api" condition "Ready" to 2026-09-03 03:10:12.015162302 +0000 UTC m=+2222.811094357 I0903 03:10:12.040315 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/libvirt-libvirt-default-r6fxt-api" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-libvirt-default-r6fxt-api\": the object has been modified; please apply your changes to the latest version and try again" I0903 03:10:12.040342 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/libvirt-libvirt-default-r6fxt-vnc" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-libvirt-default-r6fxt-vnc\": the object has been modified; please apply your changes to the latest version and try again" I0903 03:10:12.040413 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-libvirt-default-r6fxt-vnc" condition "Ready" to 2026-09-03 03:10:12.040405771 +0000 UTC m=+2222.836337816 I0903 03:10:12.040426 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-libvirt-default-r6fxt-api" condition "Ready" to 2026-09-03 03:10:12.040419191 +0000 UTC m=+2222.836351236 I0903 03:10:12.235207 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/libvirt-libvirt-default-r6fxt-api" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-libvirt-default-r6fxt-api\": the object has been modified; please apply your changes to the latest version and try again" I0903 03:10:12.266517 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-libvirt-default-r6fxt-api-1" condition "Approved" to 2026-09-03 03:10:12.266504788 +0000 UTC m=+2223.062436843 I0903 03:10:12.283881 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-libvirt-default-r6fxt-api-1" condition "Ready" to 2026-09-03 03:10:12.283867016 +0000 UTC m=+2223.079799091 I0903 03:10:12.313297 1 conditions.go:192] Found status change for Certificate "libvirt-libvirt-default-r6fxt-api" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-09-03 03:10:12.313286893 +0000 UTC m=+2223.109218938 I0903 03:10:12.326889 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/libvirt-libvirt-default-r6fxt-api" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-libvirt-default-r6fxt-api\": the object has been modified; please apply your changes to the latest version and try again" I0903 03:10:12.327938 1 conditions.go:192] Found status change for Certificate "libvirt-libvirt-default-r6fxt-api" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-09-03 03:10:12.327928648 +0000 UTC m=+2223.123860713 I0903 03:10:12.333300 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/libvirt-libvirt-default-r6fxt-api" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-libvirt-default-r6fxt-api\": the object has been modified; please apply your changes to the latest version and try again" I0903 03:10:12.339889 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/libvirt-libvirt-default-r6fxt-api" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-libvirt-default-r6fxt-api\": the object has been modified; please apply your changes to the latest version and try again" I0903 03:10:12.353099 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/libvirt-libvirt-default-r6fxt-api" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-libvirt-default-r6fxt-api\": the object has been modified; please apply your changes to the latest version and try again" I0903 03:10:12.554518 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/libvirt-libvirt-default-r6fxt-vnc" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-libvirt-default-r6fxt-vnc\": the object has been modified; please apply your changes to the latest version and try again" I0903 03:10:12.581823 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-libvirt-default-r6fxt-vnc-1" condition "Approved" to 2026-09-03 03:10:12.581797311 +0000 UTC m=+2223.377729386 I0903 03:10:12.601152 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-libvirt-default-r6fxt-vnc-1" condition "Ready" to 2026-09-03 03:10:12.601142071 +0000 UTC m=+2223.397074136 I0903 03:10:12.627756 1 conditions.go:192] Found status change for Certificate "libvirt-libvirt-default-r6fxt-vnc" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-09-03 03:10:12.627746431 +0000 UTC m=+2223.423678486 I0903 03:10:12.646909 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/libvirt-libvirt-default-r6fxt-vnc" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-libvirt-default-r6fxt-vnc\": the object has been modified; please apply your changes to the latest version and try again" I0903 03:10:12.647783 1 conditions.go:192] Found status change for Certificate "libvirt-libvirt-default-r6fxt-vnc" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-09-03 03:10:12.647776131 +0000 UTC m=+2223.443708186 I0903 03:10:12.669972 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/libvirt-libvirt-default-r6fxt-vnc" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-libvirt-default-r6fxt-vnc\": the object has been modified; please apply your changes to the latest version and try again" I0903 03:15:02.311810 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/heat-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0903 03:15:02.311876 1 conditions.go:203] Setting lastTransitionTime for Certificate "heat-api-certs" condition "Issuing" to 2026-09-03 03:15:02.311868579 +0000 UTC m=+2513.107800634 I0903 03:15:02.311883 1 conditions.go:203] Setting lastTransitionTime for Certificate "heat-api-certs" condition "Ready" to 2026-09-03 03:15:02.311718164 +0000 UTC m=+2513.107650239 I0903 03:15:02.335366 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/heat-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"heat-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0903 03:15:02.335629 1 conditions.go:203] Setting lastTransitionTime for Certificate "heat-api-certs" condition "Ready" to 2026-09-03 03:15:02.335613652 +0000 UTC m=+2513.131545727 I0903 03:15:02.401955 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/heat-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"heat-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0903 03:15:02.462179 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "heat-api-certs-1" condition "Approved" to 2026-09-03 03:15:02.462164146 +0000 UTC m=+2513.258096201 I0903 03:15:02.491820 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "heat-api-certs-1" condition "Ready" to 2026-09-03 03:15:02.491806719 +0000 UTC m=+2513.287738764 I0903 03:15:02.520116 1 conditions.go:192] Found status change for Certificate "heat-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-09-03 03:15:02.520105231 +0000 UTC m=+2513.316037276 I0903 03:15:02.535047 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/heat-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"heat-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0903 03:15:03.957068 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/heat-cfn-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0903 03:15:03.957173 1 conditions.go:203] Setting lastTransitionTime for Certificate "heat-cfn-certs" condition "Issuing" to 2026-09-03 03:15:03.957158192 +0000 UTC m=+2514.753090277 I0903 03:15:03.957281 1 conditions.go:203] Setting lastTransitionTime for Certificate "heat-cfn-certs" condition "Ready" to 2026-09-03 03:15:03.957265495 +0000 UTC m=+2514.753197550 I0903 03:15:03.974089 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/heat-cfn-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"heat-cfn-certs\": the object has been modified; please apply your changes to the latest version and try again" I0903 03:15:03.974237 1 conditions.go:203] Setting lastTransitionTime for Certificate "heat-cfn-certs" condition "Ready" to 2026-09-03 03:15:03.974225471 +0000 UTC m=+2514.770157556 I0903 03:15:04.302395 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/heat-cfn-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"heat-cfn-certs\": the object has been modified; please apply your changes to the latest version and try again" I0903 03:15:04.403576 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "heat-cfn-certs-1" condition "Approved" to 2026-09-03 03:15:04.403565419 +0000 UTC m=+2515.199497454 I0903 03:15:04.423684 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "heat-cfn-certs-1" condition "Ready" to 2026-09-03 03:15:04.423676541 +0000 UTC m=+2515.219608576 I0903 03:15:04.451188 1 conditions.go:192] Found status change for Certificate "heat-cfn-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-09-03 03:15:04.451170659 +0000 UTC m=+2515.247102704 I0903 03:15:04.465724 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/heat-cfn-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"heat-cfn-certs\": the object has been modified; please apply your changes to the latest version and try again" I0903 03:17:29.240557 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/octavia-client-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0903 03:17:29.240625 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-client-ca" condition "Ready" to 2026-09-03 03:17:29.240587204 +0000 UTC m=+2660.036519289 I0903 03:17:29.240732 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-client-ca" condition "Issuing" to 2026-09-03 03:17:29.240716938 +0000 UTC m=+2660.036649023 E0903 03:17:29.249588 1 setup.go:48] "error getting signing CA TLS certificate" err="secrets \"octavia-client-ca\" not found" logger="cert-manager.controller.setup" resource_name="octavia-client" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0903 03:17:29.249747 1 conditions.go:96] Setting lastTransitionTime for Issuer "octavia-client" condition "Ready" to 2026-09-03 03:17:29.249734142 +0000 UTC m=+2660.045666217 I0903 03:17:29.249810 1 sync.go:62] "Error initializing issuer: secrets \"octavia-client-ca\" not found" logger="cert-manager.controller" resource_name="octavia-client" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0903 03:17:29.256732 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/octavia-client-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-client-ca\": the object has been modified; please apply your changes to the latest version and try again" I0903 03:17:29.256965 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/octavia-client-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0903 03:17:29.257067 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-client-ca" condition "Issuing" to 2026-09-03 03:17:29.257054225 +0000 UTC m=+2660.052986310 E0903 03:17:29.258883 1 controller.go:162] "re-queuing item due to error processing" err="secrets \"octavia-client-ca\" not found" logger="cert-manager.controller" key="openstack/octavia-client" E0903 03:17:29.259037 1 setup.go:48] "error getting signing CA TLS certificate" err="secrets \"octavia-client-ca\" not found" logger="cert-manager.controller.setup" resource_name="octavia-client" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0903 03:17:29.259100 1 sync.go:62] "Error initializing issuer: secrets \"octavia-client-ca\" not found" logger="cert-manager.controller" resource_name="octavia-client" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0903 03:17:29.259140 1 controller.go:162] "re-queuing item due to error processing" err="secrets \"octavia-client-ca\" not found" logger="cert-manager.controller" key="openstack/octavia-client" I0903 03:17:29.297755 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/octavia-client-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-client-ca\": the object has been modified; please apply your changes to the latest version and try again" I0903 03:17:29.309473 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-client-ca-1" condition "Approved" to 2026-09-03 03:17:29.309460434 +0000 UTC m=+2660.105392509 I0903 03:17:29.333388 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-client-ca-1" condition "Ready" to 2026-09-03 03:17:29.333373453 +0000 UTC m=+2660.129305508 I0903 03:17:29.361790 1 conditions.go:192] Found status change for Certificate "octavia-client-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-09-03 03:17:29.361774549 +0000 UTC m=+2660.157706604 I0903 03:17:29.377723 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/octavia-client-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-client-ca\": the object has been modified; please apply your changes to the latest version and try again" I0903 03:17:30.033980 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/octavia-server-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0903 03:17:30.034130 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-server-ca" condition "Issuing" to 2026-09-03 03:17:30.034116033 +0000 UTC m=+2660.830048108 I0903 03:17:30.034442 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-server-ca" condition "Ready" to 2026-09-03 03:17:30.034421273 +0000 UTC m=+2660.830353328 I0903 03:17:30.047545 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/octavia-server-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-server-ca\": the object has been modified; please apply your changes to the latest version and try again" E0903 03:17:30.047710 1 setup.go:48] "error getting signing CA TLS certificate" err="secrets \"octavia-server-ca\" not found" logger="cert-manager.controller.setup" resource_name="octavia-server" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0903 03:17:30.047762 1 conditions.go:96] Setting lastTransitionTime for Issuer "octavia-server" condition "Ready" to 2026-09-03 03:17:30.047751849 +0000 UTC m=+2660.843683904 I0903 03:17:30.047823 1 sync.go:62] "Error initializing issuer: secrets \"octavia-server-ca\" not found" logger="cert-manager.controller" resource_name="octavia-server" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0903 03:17:30.048041 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-server-ca" condition "Ready" to 2026-09-03 03:17:30.048027337 +0000 UTC m=+2660.843959442 E0903 03:17:30.060549 1 controller.go:162] "re-queuing item due to error processing" err="secrets \"octavia-server-ca\" not found" logger="cert-manager.controller" key="openstack/octavia-server" E0903 03:17:30.061385 1 setup.go:48] "error getting signing CA TLS certificate" err="secrets \"octavia-server-ca\" not found" logger="cert-manager.controller.setup" resource_name="octavia-server" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0903 03:17:30.061420 1 sync.go:62] "Error initializing issuer: secrets \"octavia-server-ca\" not found" logger="cert-manager.controller" resource_name="octavia-server" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0903 03:17:30.061477 1 controller.go:162] "re-queuing item due to error processing" err="secrets \"octavia-server-ca\" not found" logger="cert-manager.controller" key="openstack/octavia-server" I0903 03:17:30.069264 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/octavia-server-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-server-ca\": the object has been modified; please apply your changes to the latest version and try again" I0903 03:17:30.069427 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-server-ca" condition "Ready" to 2026-09-03 03:17:30.06941467 +0000 UTC m=+2660.865346755 I0903 03:17:30.077173 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-server-ca-1" condition "Approved" to 2026-09-03 03:17:30.077157866 +0000 UTC m=+2660.873089921 I0903 03:17:30.083641 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-server-ca" condition "Ready" to 2026-09-03 03:17:30.083620534 +0000 UTC m=+2660.879552609 I0903 03:17:30.088635 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/octavia-server-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-server-ca\": the object has been modified; please apply your changes to the latest version and try again" I0903 03:17:30.091021 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-server-ca-1" condition "Ready" to 2026-09-03 03:17:30.091011879 +0000 UTC m=+2660.886943934 I0903 03:17:30.117999 1 conditions.go:192] Found status change for Certificate "octavia-server-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-09-03 03:17:30.117990171 +0000 UTC m=+2660.913922236 I0903 03:17:30.134842 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/octavia-server-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-server-ca\": the object has been modified; please apply your changes to the latest version and try again" I0903 03:17:30.135268 1 conditions.go:192] Found status change for Certificate "octavia-server-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-09-03 03:17:30.135261979 +0000 UTC m=+2660.931194044 I0903 03:17:30.156740 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/octavia-server-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-server-ca\": the object has been modified; please apply your changes to the latest version and try again" I0903 03:17:30.157257 1 conditions.go:192] Found status change for Certificate "octavia-server-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-09-03 03:17:30.157243788 +0000 UTC m=+2660.953175863 I0903 03:17:30.159455 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/octavia-server-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-server-ca\": the object has been modified; please apply your changes to the latest version and try again" I0903 03:17:30.773476 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/octavia-client-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0903 03:17:30.773807 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-client-certs" condition "Ready" to 2026-09-03 03:17:30.773799102 +0000 UTC m=+2661.569731177 I0903 03:17:30.773526 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-client-certs" condition "Issuing" to 2026-09-03 03:17:30.773515073 +0000 UTC m=+2661.569447158 I0903 03:17:30.788132 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/octavia-client-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-client-certs\": the object has been modified; please apply your changes to the latest version and try again" I0903 03:17:30.788401 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/octavia-client-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0903 03:17:30.788465 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-client-certs" condition "Issuing" to 2026-09-03 03:17:30.788430338 +0000 UTC m=+2661.584362423 I0903 03:17:30.831158 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/octavia-client-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-client-certs\": the object has been modified; please apply your changes to the latest version and try again" I0903 03:17:30.837364 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-client-certs-1" condition "Approved" to 2026-09-03 03:17:30.83734659 +0000 UTC m=+2661.633278675 I0903 03:17:30.863217 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-client-certs-1" condition "Ready" to 2026-09-03 03:17:30.863196028 +0000 UTC m=+2661.659128073 I0903 03:17:34.260078 1 conditions.go:85] Found status change for Issuer "octavia-client" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-09-03 03:17:34.260059413 +0000 UTC m=+2665.055991498 I0903 03:17:34.272515 1 conditions.go:252] Found status change for CertificateRequest "octavia-client-certs-1" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-09-03 03:17:34.272494881 +0000 UTC m=+2665.068426956 I0903 03:17:34.296983 1 conditions.go:192] Found status change for Certificate "octavia-client-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-09-03 03:17:34.296965858 +0000 UTC m=+2665.092897933 I0903 03:17:34.316806 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/octavia-client-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-client-certs\": the object has been modified; please apply your changes to the latest version and try again" I0903 03:17:34.317441 1 conditions.go:192] Found status change for Certificate "octavia-client-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-09-03 03:17:34.317425872 +0000 UTC m=+2665.113357957 I0903 03:17:34.333544 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/octavia-client-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-client-certs\": the object has been modified; please apply your changes to the latest version and try again" I0903 03:17:35.069519 1 conditions.go:85] Found status change for Issuer "octavia-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-09-03 03:17:35.069497368 +0000 UTC m=+2665.865429443 I0903 03:20:16.096646 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-api-certs" condition "Ready" to 2026-09-03 03:20:16.09662307 +0000 UTC m=+2826.892555145 I0903 03:20:16.096688 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/octavia-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0903 03:20:16.096749 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-api-certs" condition "Issuing" to 2026-09-03 03:20:16.096736914 +0000 UTC m=+2826.892668989 I0903 03:20:16.108774 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/octavia-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0903 03:20:16.108860 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-api-certs" condition "Ready" to 2026-09-03 03:20:16.108853824 +0000 UTC m=+2826.904785869 I0903 03:20:16.267548 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/octavia-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0903 03:20:16.311157 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-api-certs-1" condition "Approved" to 2026-09-03 03:20:16.311136992 +0000 UTC m=+2827.107069077 I0903 03:20:16.335073 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-api-certs-1" condition "Ready" to 2026-09-03 03:20:16.335054782 +0000 UTC m=+2827.130986857 I0903 03:20:16.364562 1 conditions.go:192] Found status change for Certificate "octavia-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-09-03 03:20:16.364542971 +0000 UTC m=+2827.160475056 I0903 03:20:16.384246 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/octavia-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0903 03:20:16.384953 1 conditions.go:192] Found status change for Certificate "octavia-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-09-03 03:20:16.384945744 +0000 UTC m=+2827.180877799 I0903 03:20:16.391505 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/octavia-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0903 03:20:16.408077 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/octavia-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0903 03:21:04.129731 1 conditions.go:96] Setting lastTransitionTime for Issuer "test-selfsigned" condition "Ready" to 2026-09-03 03:21:04.129715936 +0000 UTC m=+2874.925647991 I0903 03:21:04.155188 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="cert-manager-test/selfsigned-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0903 03:21:04.155252 1 conditions.go:203] Setting lastTransitionTime for Certificate "selfsigned-cert" condition "Issuing" to 2026-09-03 03:21:04.155238214 +0000 UTC m=+2874.951170289 I0903 03:21:04.155293 1 conditions.go:203] Setting lastTransitionTime for Certificate "selfsigned-cert" condition "Ready" to 2026-09-03 03:21:04.155213273 +0000 UTC m=+2874.951145348 I0903 03:21:04.172185 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="cert-manager-test/selfsigned-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"selfsigned-cert\": the object has been modified; please apply your changes to the latest version and try again" I0903 03:21:04.172276 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="cert-manager-test/selfsigned-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0903 03:21:04.172306 1 conditions.go:203] Setting lastTransitionTime for Certificate "selfsigned-cert" condition "Issuing" to 2026-09-03 03:21:04.172302104 +0000 UTC m=+2874.968234159 E0903 03:21:04.185010 1 controller.go:134] "issuer in work queue no longer exists" err="issuer.cert-manager.io \"test-selfsigned\" not found" logger="cert-manager.controller" I0903 03:21:04.235729 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-selfsigned-issuer" condition "Ready" to 2026-09-03 03:21:04.235707748 +0000 UTC m=+2875.031639783 I0903 03:21:04.257545 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="capi-system/capi-serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0903 03:21:04.257609 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Issuing" to 2026-09-03 03:21:04.257594836 +0000 UTC m=+2875.053526911 I0903 03:21:04.257673 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Ready" to 2026-09-03 03:21:04.257664858 +0000 UTC m=+2875.053596913 I0903 03:21:04.271055 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capi-system/capi-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0903 03:21:04.271994 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Ready" to 2026-09-03 03:21:04.271980504 +0000 UTC m=+2875.067912609 E0903 03:21:04.296547 1 controller.go:162] "re-queuing item due to error processing" err="secrets \"selfsigned-cert-\" is forbidden: unable to create new content in namespace cert-manager-test because it is being terminated" logger="cert-manager.controller" key="cert-manager-test/selfsigned-cert" I0903 03:21:04.341187 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capi-system/capi-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0903 03:21:04.367463 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-serving-cert-1" condition "Approved" to 2026-09-03 03:21:04.367447176 +0000 UTC m=+2875.163379211 I0903 03:21:04.412122 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-serving-cert-1" condition "Ready" to 2026-09-03 03:21:04.412108768 +0000 UTC m=+2875.208040823 I0903 03:21:04.477841 1 conditions.go:192] Found status change for Certificate "capi-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-09-03 03:21:04.477819951 +0000 UTC m=+2875.273751996 I0903 03:21:04.548540 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capi-system/capi-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0903 03:21:04.599414 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capi-system/capi-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0903 03:21:05.150976 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-kubeadm-bootstrap-selfsigned-issuer" condition "Ready" to 2026-09-03 03:21:05.150961021 +0000 UTC m=+2875.946893066 I0903 03:21:05.169205 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0903 03:21:05.169249 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Issuing" to 2026-09-03 03:21:05.169240138 +0000 UTC m=+2875.965172193 I0903 03:21:05.169368 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready" to 2026-09-03 03:21:05.169348561 +0000 UTC m=+2875.965280606 I0903 03:21:05.180803 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0903 03:21:05.180965 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready" to 2026-09-03 03:21:05.180957085 +0000 UTC m=+2875.976889130 I0903 03:21:05.360135 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0903 03:21:05.400853 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-bootstrap-serving-cert-1" condition "Approved" to 2026-09-03 03:21:05.400839321 +0000 UTC m=+2876.196771376 I0903 03:21:05.421285 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-bootstrap-serving-cert-1" condition "Ready" to 2026-09-03 03:21:05.421272604 +0000 UTC m=+2876.217204659 I0903 03:21:05.450721 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-09-03 03:21:05.450705962 +0000 UTC m=+2876.246638017 I0903 03:21:05.470489 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0903 03:21:05.471147 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-09-03 03:21:05.471137965 +0000 UTC m=+2876.267070010 I0903 03:21:05.525102 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0903 03:21:05.526542 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-09-03 03:21:05.526532464 +0000 UTC m=+2876.322464509 I0903 03:21:05.536726 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0903 03:21:05.612715 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-kubeadm-control-plane-selfsigned-issuer" condition "Ready" to 2026-09-03 03:21:05.612698962 +0000 UTC m=+2876.408631007 I0903 03:21:05.625702 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0903 03:21:05.625740 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Issuing" to 2026-09-03 03:21:05.62573232 +0000 UTC m=+2876.421664365 I0903 03:21:05.625773 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready" to 2026-09-03 03:21:05.62574627 +0000 UTC m=+2876.421678315 I0903 03:21:05.636894 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0903 03:21:05.637064 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0903 03:21:05.637107 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Issuing" to 2026-09-03 03:21:05.637100116 +0000 UTC m=+2876.433032161 I0903 03:21:05.877729 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-control-plane-serving-cert-1" condition "Approved" to 2026-09-03 03:21:05.877711484 +0000 UTC m=+2876.673643529 I0903 03:21:05.893377 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-control-plane-serving-cert-1" condition "Ready" to 2026-09-03 03:21:05.893366952 +0000 UTC m=+2876.689298997 I0903 03:21:05.930134 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-09-03 03:21:05.930122872 +0000 UTC m=+2876.726054907 I0903 03:21:05.944115 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0903 03:21:05.944610 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-09-03 03:21:05.944601934 +0000 UTC m=+2876.740533979 I0903 03:21:06.093702 1 conditions.go:96] Setting lastTransitionTime for Issuer "capo-selfsigned-issuer" condition "Ready" to 2026-09-03 03:21:06.093692611 +0000 UTC m=+2876.889624656 I0903 03:21:06.112268 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Ready" to 2026-09-03 03:21:06.112256396 +0000 UTC m=+2876.908188441 I0903 03:21:06.112493 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="capo-system/capo-serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0903 03:21:06.112509 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Issuing" to 2026-09-03 03:21:06.112506525 +0000 UTC m=+2876.908438570 I0903 03:21:06.157429 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0903 03:21:06.292420 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capo-system/capo-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0903 03:21:06.292518 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="capo-system/capo-serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0903 03:21:06.292545 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Issuing" to 2026-09-03 03:21:06.292538495 +0000 UTC m=+2877.088470540 I0903 03:21:06.634690 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capo-system/capo-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0903 03:21:06.694195 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capo-serving-cert-1" condition "Approved" to 2026-09-03 03:21:06.694174354 +0000 UTC m=+2877.490106399 I0903 03:21:06.955246 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capo-serving-cert-1" condition "Ready" to 2026-09-03 03:21:06.955228476 +0000 UTC m=+2877.751160561 I0903 03:21:07.292063 1 conditions.go:192] Found status change for Certificate "capo-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-09-03 03:21:07.292046227 +0000 UTC m=+2878.087978312 I0903 03:21:07.392872 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capo-system/capo-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0903 03:21:07.393707 1 conditions.go:192] Found status change for Certificate "capo-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-09-03 03:21:07.393697057 +0000 UTC m=+2878.189629122 I0903 03:21:07.633688 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capo-system/capo-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0903 03:21:07.690455 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capo-system/capo-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again"