I0617 02:47:45.185800 1 start.go:75] "cert-manager: starting controller" version="v1.12.10" git-commit="4131d77fe377e78a6fa562af6bdbd31532ddb1ad" I0617 02:47:45.185909 1 controller.go:262] "cert-manager/controller/build-context: configured acme dns01 nameservers" nameservers=["10.96.0.10:53"] W0617 02:47:45.186005 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0617 02:47:45.190330 1 controller.go:82] "cert-manager/controller: enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" I0617 02:47:45.190716 1 controller.go:156] "cert-manager/controller: starting leader election" I0617 02:47:45.190821 1 controller.go:103] "cert-manager/controller: starting metrics server" address="[::]:9402" I0617 02:47:45.191099 1 controller.go:149] "cert-manager/controller: starting healthz server" address="[::]:9403" I0617 02:47:45.193825 1 leaderelection.go:245] attempting to acquire leader lease cert-manager/cert-manager-controller... I0617 02:47:45.207454 1 leaderelection.go:255] successfully acquired lease cert-manager/cert-manager-controller I0617 02:47:45.213100 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-trigger" I0617 02:47:45.219855 1 controller.go:203] "cert-manager/controller: not starting controller as it's disabled" controller="certificatesigningrequests-issuer-selfsigned" I0617 02:47:45.219921 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificaterequests-issuer-acme" I0617 02:47:45.223151 1 controller.go:226] "cert-manager/controller: starting controller" controller="challenges" I0617 02:47:45.225544 1 controller.go:226] "cert-manager/controller: starting controller" controller="ingress-shim" I0617 02:47:45.227641 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificaterequests-approver" I0617 02:47:45.229408 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-key-manager" I0617 02:47:45.231263 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-request-manager" I0617 02:47:45.235961 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificaterequests-issuer-selfsigned" I0617 02:47:45.237980 1 controller.go:203] "cert-manager/controller: not starting controller as it's disabled" controller="gateway-shim" I0617 02:47:45.238092 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificaterequests-issuer-vault" I0617 02:47:45.240241 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-metrics" I0617 02:47:45.242007 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-readiness" I0617 02:47:45.243682 1 controller.go:203] "cert-manager/controller: not starting controller as it's disabled" controller="certificatesigningrequests-issuer-acme" I0617 02:47:45.243941 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificaterequests-issuer-ca" I0617 02:47:45.245448 1 controller.go:203] "cert-manager/controller: not starting controller as it's disabled" controller="certificatesigningrequests-issuer-venafi" I0617 02:47:45.245557 1 controller.go:226] "cert-manager/controller: starting controller" controller="clusterissuers" I0617 02:47:45.247379 1 controller.go:226] "cert-manager/controller: starting controller" controller="issuers" I0617 02:47:45.249271 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-issuing" I0617 02:47:45.250904 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-revision-manager" I0617 02:47:45.255262 1 controller.go:226] "cert-manager/controller: starting controller" controller="orders" I0617 02:47:45.257402 1 controller.go:203] "cert-manager/controller: not starting controller as it's disabled" controller="certificatesigningrequests-issuer-ca" I0617 02:47:45.257436 1 controller.go:203] "cert-manager/controller: not starting controller as it's disabled" controller="certificatesigningrequests-issuer-vault" I0617 02:47:45.257909 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificaterequests-issuer-venafi" I0617 02:47:56.608105 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-06-17 02:47:56.608071242 +0000 UTC m=+11.460280456 I0617 02:47:57.379159 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0617 02:47:57.379233 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-06-17 02:47:57.379223601 +0000 UTC m=+12.231432805 I0617 02:47:57.379549 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-06-17 02:47:57.379524848 +0000 UTC m=+12.231734062 I0617 02:47:57.394442 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0617 02:47:57.394600 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0617 02:47:57.394642 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-06-17 02:47:57.394633015 +0000 UTC m=+12.246842209 E0617 02:47:57.394920 1 setup.go:48] "cert-manager/clusterissuers/setup: error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0617 02:47:57.395007 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-06-17 02:47:57.394996985 +0000 UTC m=+12.247206169 E0617 02:47:57.395042 1 sync.go:62] "cert-manager/clusterissuers: error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0617 02:47:57.406771 1 controller.go:167] "cert-manager/clusterissuers: re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" key="atmosphere" E0617 02:47:57.406909 1 setup.go:48] "cert-manager/clusterissuers/setup: error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0617 02:47:57.406955 1 sync.go:62] "cert-manager/clusterissuers: error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0617 02:47:57.407005 1 controller.go:167] "cert-manager/clusterissuers: re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" key="atmosphere" I0617 02:47:57.443919 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-vsmgb" condition "Approved" to 2026-06-17 02:47:57.443874526 +0000 UTC m=+12.296083780 I0617 02:47:57.457367 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-vsmgb" condition "Ready" to 2026-06-17 02:47:57.45734693 +0000 UTC m=+12.309556144 I0617 02:47:57.486508 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-17 02:47:57.486494363 +0000 UTC m=+12.338703547 I0617 02:47:57.504033 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0617 02:47:57.546429 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0617 02:48:02.407991 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-17 02:48:02.407968929 +0000 UTC m=+17.260178133 I0617 02:48:23.324154 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0617 02:48:23.324191 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-06-17 02:48:23.324182968 +0000 UTC m=+38.176392152 I0617 02:48:23.324223 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-06-17 02:48:23.324195138 +0000 UTC m=+38.176404342 I0617 02:48:23.337488 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-06-17 02:48:23.337472516 +0000 UTC m=+38.189681710 I0617 02:48:23.350258 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0617 02:48:23.350368 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-06-17 02:48:23.350358284 +0000 UTC m=+38.202567478 I0617 02:48:23.461046 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0617 02:48:23.504876 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-47cr4" condition "Approved" to 2026-06-17 02:48:23.504858705 +0000 UTC m=+38.357067889 I0617 02:48:23.536651 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-47cr4" condition "Ready" to 2026-06-17 02:48:23.536633408 +0000 UTC m=+38.388842582 I0617 02:48:23.584689 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-17 02:48:23.584658617 +0000 UTC m=+38.436867811 I0617 02:48:23.609581 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0617 02:48:23.610464 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-17 02:48:23.610429663 +0000 UTC m=+38.462638867 I0617 02:48:23.632129 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0617 02:48:23.632748 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-17 02:48:23.632737348 +0000 UTC m=+38.484946532 I0617 02:48:23.636625 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0617 02:51:06.484254 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="auth-system/keycloak.199-204-45-74.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0617 02:51:06.484298 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-74.nip.io-tls" condition "Issuing" to 2026-06-17 02:51:06.484289358 +0000 UTC m=+201.336498522 I0617 02:51:06.485116 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-74.nip.io-tls" condition "Ready" to 2026-06-17 02:51:06.48511182 +0000 UTC m=+201.337320994 I0617 02:51:06.504685 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="auth-system/keycloak.199-204-45-74.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-74.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0617 02:51:06.504947 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-74.nip.io-tls" condition "Ready" to 2026-06-17 02:51:06.50493435 +0000 UTC m=+201.357143544 I0617 02:51:06.826486 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="auth-system/keycloak.199-204-45-74.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-74.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0617 02:51:06.859828 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-74.nip.io-tls-662ks" condition "Approved" to 2026-06-17 02:51:06.859807394 +0000 UTC m=+201.712016578 I0617 02:51:06.894628 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-74.nip.io-tls-662ks" condition "Ready" to 2026-06-17 02:51:06.894607398 +0000 UTC m=+201.746816612 I0617 02:51:06.974938 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-74.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-17 02:51:06.974922025 +0000 UTC m=+201.827131199 I0617 02:51:07.004849 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="auth-system/keycloak.199-204-45-74.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-74.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0617 02:51:07.005432 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-74.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-17 02:51:07.005424376 +0000 UTC m=+201.857633560 I0617 02:51:07.026522 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="auth-system/keycloak.199-204-45-74.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-74.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0617 02:51:07.027163 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-74.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-17 02:51:07.027152216 +0000 UTC m=+201.879361400 I0617 02:52:12.146951 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0617 02:52:12.147033 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-06-17 02:52:12.147024118 +0000 UTC m=+266.999233332 I0617 02:52:12.147153 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-06-17 02:52:12.147130271 +0000 UTC m=+266.999339485 E0617 02:52:12.160164 1 setup.go:48] "cert-manager/clusterissuers/setup: error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0617 02:52:12.160213 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-06-17 02:52:12.160203963 +0000 UTC m=+267.012413177 E0617 02:52:12.160673 1 sync.go:62] "cert-manager/clusterissuers: error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0617 02:52:12.163782 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0617 02:52:12.163905 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0617 02:52:12.163925 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-06-17 02:52:12.163920551 +0000 UTC m=+267.016129725 E0617 02:52:12.173490 1 controller.go:167] "cert-manager/clusterissuers: re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" key="kube-prometheus-stack" E0617 02:52:12.173651 1 setup.go:48] "cert-manager/clusterissuers/setup: error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0617 02:52:12.173728 1 sync.go:62] "cert-manager/clusterissuers: error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0617 02:52:12.173857 1 controller.go:167] "cert-manager/clusterissuers: re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" key="kube-prometheus-stack" I0617 02:52:12.203322 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0617 02:52:12.203868 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-cfg4q" condition "Approved" to 2026-06-17 02:52:12.203854477 +0000 UTC m=+267.056063691 I0617 02:52:12.215258 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-cfg4q" condition "Ready" to 2026-06-17 02:52:12.215239585 +0000 UTC m=+267.067448799 I0617 02:52:12.235970 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-17 02:52:12.235952939 +0000 UTC m=+267.088162143 I0617 02:52:12.252462 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0617 02:52:12.252688 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-17 02:52:12.252644776 +0000 UTC m=+267.104853960 I0617 02:52:12.258997 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0617 02:52:12.266301 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0617 02:52:17.174445 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-17 02:52:17.17442751 +0000 UTC m=+272.026636714 I0617 02:52:58.293155 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0617 02:52:58.293241 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-06-17 02:52:58.293231447 +0000 UTC m=+313.145440641 I0617 02:52:58.293335 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-06-17 02:52:58.29332616 +0000 UTC m=+313.145535354 I0617 02:52:58.296840 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0617 02:52:58.296869 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-06-17 02:52:58.296866312 +0000 UTC m=+313.149075486 I0617 02:52:58.296920 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-06-17 02:52:58.296909413 +0000 UTC m=+313.149118627 I0617 02:52:58.305353 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0617 02:52:58.305401 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-06-17 02:52:58.305390894 +0000 UTC m=+313.157600068 I0617 02:52:58.305784 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-06-17 02:52:58.305767594 +0000 UTC m=+313.157976768 I0617 02:52:58.320882 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0617 02:52:58.321141 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-06-17 02:52:58.321129974 +0000 UTC m=+313.173339168 I0617 02:52:58.325454 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0617 02:52:58.325513 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-06-17 02:52:58.325506548 +0000 UTC m=+313.177715722 I0617 02:52:58.339908 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0617 02:52:58.340000 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-06-17 02:52:58.339992555 +0000 UTC m=+313.192201729 I0617 02:52:58.408555 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0617 02:52:58.413519 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0617 02:52:58.459629 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-b2s6r" condition "Approved" to 2026-06-17 02:52:58.459592969 +0000 UTC m=+313.311802183 I0617 02:52:58.465238 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-pjcmx" condition "Approved" to 2026-06-17 02:52:58.465219466 +0000 UTC m=+313.317428650 I0617 02:52:58.470585 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0617 02:52:58.482334 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-pjcmx" condition "Ready" to 2026-06-17 02:52:58.482319891 +0000 UTC m=+313.334529075 I0617 02:52:58.483039 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-b2s6r" condition "Ready" to 2026-06-17 02:52:58.483025069 +0000 UTC m=+313.335234253 I0617 02:52:58.503661 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-r5xdl" condition "Approved" to 2026-06-17 02:52:58.503645106 +0000 UTC m=+313.355854290 I0617 02:52:58.510266 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-17 02:52:58.510248598 +0000 UTC m=+313.362457782 I0617 02:52:58.636124 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-17 02:52:58.636113786 +0000 UTC m=+313.488322960 I0617 02:52:58.692574 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-r5xdl" condition "Ready" to 2026-06-17 02:52:58.692561556 +0000 UTC m=+313.544770740 I0617 02:52:58.985997 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0617 02:52:58.986618 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-17 02:52:58.986611572 +0000 UTC m=+313.838820746 I0617 02:52:59.152117 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0617 02:52:59.153003 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-17 02:52:59.152994083 +0000 UTC m=+314.005203267 I0617 02:52:59.441931 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-17 02:52:59.441916877 +0000 UTC m=+314.294126061 I0617 02:52:59.546202 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-17 02:52:59.546183742 +0000 UTC m=+314.398392926 I0617 02:52:59.588664 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-17 02:52:59.588639756 +0000 UTC m=+314.440848960 I0617 02:52:59.689860 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0617 02:52:59.735562 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0617 02:52:59.785210 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0617 02:52:59.838947 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0617 02:52:59.886537 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0617 02:53:00.144682 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0617 02:53:00.145407 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-17 02:53:00.145398534 +0000 UTC m=+314.997607718 I0617 02:53:00.422748 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0617 02:53:00.422747 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0617 02:53:09.148955 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-65ctk-tls" condition "Ready" to 2026-06-17 02:53:09.148937203 +0000 UTC m=+324.001146387 I0617 02:53:09.149252 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-65ctk-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0617 02:53:09.149291 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-65ctk-tls" condition "Issuing" to 2026-06-17 02:53:09.149281983 +0000 UTC m=+324.001491167 I0617 02:53:09.164516 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-65ctk-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-65ctk-tls\": the object has been modified; please apply your changes to the latest version and try again" I0617 02:53:09.164581 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-65ctk-tls" condition "Ready" to 2026-06-17 02:53:09.164575781 +0000 UTC m=+324.016784965 I0617 02:53:09.310360 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-65ctk-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-65ctk-tls\": the object has been modified; please apply your changes to the latest version and try again" I0617 02:53:09.344600 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-65ctk-vsbl4" condition "Approved" to 2026-06-17 02:53:09.344584238 +0000 UTC m=+324.196793412 I0617 02:53:09.378458 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-65ctk-vsbl4" condition "Ready" to 2026-06-17 02:53:09.378442999 +0000 UTC m=+324.230652203 I0617 02:53:09.422133 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-65ctk-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-17 02:53:09.422119886 +0000 UTC m=+324.274329070 I0617 02:53:09.455911 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-65ctk-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-65ctk-tls\": the object has been modified; please apply your changes to the latest version and try again" I0617 02:53:09.522554 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-65ctk-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-65ctk-tls\": the object has been modified; please apply your changes to the latest version and try again" I0617 02:53:40.796151 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0617 02:53:40.796193 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-06-17 02:53:40.796181241 +0000 UTC m=+355.648390445 I0617 02:53:40.796203 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-06-17 02:53:40.796190342 +0000 UTC m=+355.648399566 I0617 02:53:40.813036 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0617 02:53:40.813099 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0617 02:53:40.813164 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-06-17 02:53:40.813114563 +0000 UTC m=+355.665323747 I0617 02:53:41.013910 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0617 02:53:41.021195 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-m9lgx" condition "Approved" to 2026-06-17 02:53:41.02118074 +0000 UTC m=+355.873389914 I0617 02:53:41.045446 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-m9lgx" condition "Ready" to 2026-06-17 02:53:41.045433961 +0000 UTC m=+355.897643135 I0617 02:53:41.077526 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-17 02:53:41.077510957 +0000 UTC m=+355.929720171 I0617 02:53:41.098507 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0617 02:53:41.099203 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-17 02:53:41.099193341 +0000 UTC m=+355.951402525 I0617 02:53:41.108099 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0617 02:53:41.115749 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0617 02:53:41.116520 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-17 02:53:41.116507492 +0000 UTC m=+355.968716686 I0617 02:56:57.138565 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-06-17 02:56:57.138513963 +0000 UTC m=+551.990723177 I0617 02:56:57.138900 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0617 02:56:57.138982 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-06-17 02:56:57.138942384 +0000 UTC m=+551.991151598 I0617 02:56:57.161220 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0617 02:56:57.161311 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0617 02:56:57.161338 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-06-17 02:56:57.16132927 +0000 UTC m=+552.013538474 I0617 02:56:57.441116 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0617 02:56:57.451317 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-8c86z" condition "Approved" to 2026-06-17 02:56:57.451298347 +0000 UTC m=+552.303507531 I0617 02:56:57.469132 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-8c86z" condition "Ready" to 2026-06-17 02:56:57.469105404 +0000 UTC m=+552.321314598 I0617 02:56:57.502525 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-17 02:56:57.502480717 +0000 UTC m=+552.354689931 I0617 02:56:57.526309 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0617 02:56:57.526740 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-17 02:56:57.526734672 +0000 UTC m=+552.378943846 I0617 02:56:57.541905 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0617 02:56:57.545062 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0617 02:59:26.557108 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-06-17 02:59:26.557055082 +0000 UTC m=+701.409264296 I0617 02:59:26.557316 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0617 02:59:26.557373 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-06-17 02:59:26.55736405 +0000 UTC m=+701.409573264 I0617 02:59:26.578075 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0617 02:59:26.578200 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0617 02:59:26.578287 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-06-17 02:59:26.578274639 +0000 UTC m=+701.430483843 I0617 02:59:26.717022 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0617 02:59:26.727998 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-4d6p9" condition "Approved" to 2026-06-17 02:59:26.727974785 +0000 UTC m=+701.580183969 I0617 02:59:26.759747 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-4d6p9" condition "Ready" to 2026-06-17 02:59:26.759727009 +0000 UTC m=+701.611936183 I0617 02:59:26.797773 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-17 02:59:26.797747349 +0000 UTC m=+701.649956543 I0617 02:59:26.834484 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0617 02:59:26.835293 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-17 02:59:26.835282145 +0000 UTC m=+701.687491359 I0617 02:59:26.870762 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0617 02:59:26.871439 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-17 02:59:26.871427516 +0000 UTC m=+701.723636730 I0617 03:00:28.765882 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0617 03:00:28.765919 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-06-17 03:00:28.765912065 +0000 UTC m=+763.618121249 I0617 03:00:28.766505 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-06-17 03:00:28.766497281 +0000 UTC m=+763.618706465 I0617 03:00:28.786489 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:00:28.786619 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-06-17 03:00:28.786601683 +0000 UTC m=+763.638810897 I0617 03:00:29.023266 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:00:29.060501 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-2cggl" condition "Approved" to 2026-06-17 03:00:29.060477659 +0000 UTC m=+763.912686843 I0617 03:00:29.087345 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-2cggl" condition "Ready" to 2026-06-17 03:00:29.087328161 +0000 UTC m=+763.939537375 I0617 03:00:29.117819 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-17 03:00:29.117799827 +0000 UTC m=+763.970009001 I0617 03:00:29.146883 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:00:29.200192 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:03:34.855670 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0617 03:03:34.855796 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-06-17 03:03:34.855778257 +0000 UTC m=+949.707987531 I0617 03:03:34.855711 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-06-17 03:03:34.855679234 +0000 UTC m=+949.707888448 I0617 03:03:34.876964 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:03:34.877088 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-06-17 03:03:34.877078285 +0000 UTC m=+949.729287469 I0617 03:03:35.018155 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:03:35.063742 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-zmb4n" condition "Approved" to 2026-06-17 03:03:35.063719009 +0000 UTC m=+949.915928223 I0617 03:03:35.089727 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-zmb4n" condition "Ready" to 2026-06-17 03:03:35.08970831 +0000 UTC m=+949.941917484 I0617 03:03:35.122161 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-17 03:03:35.122142519 +0000 UTC m=+949.974351703 I0617 03:03:35.147483 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:03:35.148682 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-17 03:03:35.148670633 +0000 UTC m=+950.000879807 I0617 03:03:35.148952 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:03:35.172317 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:03:35.173144 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-17 03:03:35.173135214 +0000 UTC m=+950.025344398 I0617 03:09:46.185261 1 conditions.go:203] Setting lastTransitionTime for Certificate "cinder-api-certs" condition "Ready" to 2026-06-17 03:09:46.185217158 +0000 UTC m=+1321.037426362 I0617 03:09:46.185548 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/cinder-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0617 03:09:46.185663 1 conditions.go:203] Setting lastTransitionTime for Certificate "cinder-api-certs" condition "Issuing" to 2026-06-17 03:09:46.185651069 +0000 UTC m=+1321.037860263 I0617 03:09:46.201857 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/cinder-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"cinder-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:09:46.201959 1 conditions.go:203] Setting lastTransitionTime for Certificate "cinder-api-certs" condition "Ready" to 2026-06-17 03:09:46.201947398 +0000 UTC m=+1321.054156602 I0617 03:09:46.362795 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/cinder-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"cinder-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:09:46.399929 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "cinder-api-certs-zrzt2" condition "Approved" to 2026-06-17 03:09:46.399900751 +0000 UTC m=+1321.252109955 I0617 03:09:46.423688 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "cinder-api-certs-zrzt2" condition "Ready" to 2026-06-17 03:09:46.423670877 +0000 UTC m=+1321.275880061 I0617 03:09:46.459183 1 conditions.go:192] Found status change for Certificate "cinder-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-17 03:09:46.459166821 +0000 UTC m=+1321.311376005 I0617 03:09:46.487728 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/cinder-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"cinder-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:09:46.488606 1 conditions.go:192] Found status change for Certificate "cinder-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-17 03:09:46.488596257 +0000 UTC m=+1321.340805461 I0617 03:09:46.513797 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/cinder-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"cinder-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:11:14.740213 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/placement-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0617 03:11:14.740364 1 conditions.go:203] Setting lastTransitionTime for Certificate "placement-api-certs" condition "Issuing" to 2026-06-17 03:11:14.740352107 +0000 UTC m=+1409.592561321 I0617 03:11:14.740343 1 conditions.go:203] Setting lastTransitionTime for Certificate "placement-api-certs" condition "Ready" to 2026-06-17 03:11:14.740323316 +0000 UTC m=+1409.592532490 I0617 03:11:14.970854 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/placement-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"placement-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:11:14.971001 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/placement-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0617 03:11:14.971034 1 conditions.go:203] Setting lastTransitionTime for Certificate "placement-api-certs" condition "Issuing" to 2026-06-17 03:11:14.971024001 +0000 UTC m=+1409.823233215 I0617 03:11:15.502408 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "placement-api-certs-842tj" condition "Approved" to 2026-06-17 03:11:15.502388412 +0000 UTC m=+1410.354597626 I0617 03:11:15.528987 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "placement-api-certs-842tj" condition "Ready" to 2026-06-17 03:11:15.528970797 +0000 UTC m=+1410.381180011 I0617 03:11:15.565328 1 conditions.go:192] Found status change for Certificate "placement-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-17 03:11:15.565310828 +0000 UTC m=+1410.417520042 I0617 03:11:15.587969 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/placement-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"placement-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:11:15.589272 1 conditions.go:192] Found status change for Certificate "placement-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-17 03:11:15.589259334 +0000 UTC m=+1410.441468548 I0617 03:11:15.606412 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/placement-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"placement-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:11:15.607295 1 conditions.go:192] Found status change for Certificate "placement-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-17 03:11:15.607282126 +0000 UTC m=+1410.459491340 I0617 03:12:12.498896 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/libvirt-vnc-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0617 03:12:12.498960 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-vnc-ca" condition "Issuing" to 2026-06-17 03:12:12.498943885 +0000 UTC m=+1467.351153149 I0617 03:12:12.499022 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-vnc-ca" condition "Ready" to 2026-06-17 03:12:12.498981456 +0000 UTC m=+1467.351190680 I0617 03:12:12.519576 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/libvirt-vnc-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-vnc-ca\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:12:12.519661 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-vnc-ca" condition "Ready" to 2026-06-17 03:12:12.519654116 +0000 UTC m=+1467.371863290 I0617 03:12:12.549763 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/libvirt-vnc-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-vnc-ca\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:12:12.589809 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-vnc-ca-hn8cs" condition "Approved" to 2026-06-17 03:12:12.589795532 +0000 UTC m=+1467.442004706 I0617 03:12:12.615134 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-vnc-ca-hn8cs" condition "Ready" to 2026-06-17 03:12:12.615121125 +0000 UTC m=+1467.467330299 I0617 03:12:12.664373 1 conditions.go:192] Found status change for Certificate "libvirt-vnc-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-17 03:12:12.664348692 +0000 UTC m=+1467.516557906 I0617 03:12:12.685144 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/libvirt-vnc-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-vnc-ca\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:12:12.685615 1 conditions.go:192] Found status change for Certificate "libvirt-vnc-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-17 03:12:12.685602918 +0000 UTC m=+1467.537812102 I0617 03:12:12.705603 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/libvirt-vnc-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-vnc-ca\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:12:13.247139 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-api-ca" condition "Ready" to 2026-06-17 03:12:13.247123197 +0000 UTC m=+1468.099332381 I0617 03:12:13.247239 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/libvirt-api-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0617 03:12:13.247290 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-api-ca" condition "Issuing" to 2026-06-17 03:12:13.247277912 +0000 UTC m=+1468.099487126 I0617 03:12:13.266702 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/libvirt-api-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-api-ca\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:12:13.266958 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/libvirt-api-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0617 03:12:13.267034 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-api-ca" condition "Issuing" to 2026-06-17 03:12:13.267020769 +0000 UTC m=+1468.119229973 I0617 03:12:13.317441 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/libvirt-api-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-api-ca\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:12:13.327067 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-api-ca-4mrp7" condition "Approved" to 2026-06-17 03:12:13.32705409 +0000 UTC m=+1468.179263254 I0617 03:12:13.345887 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-api-ca-4mrp7" condition "Ready" to 2026-06-17 03:12:13.345867352 +0000 UTC m=+1468.198076536 I0617 03:12:13.379444 1 conditions.go:192] Found status change for Certificate "libvirt-api-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-17 03:12:13.379427509 +0000 UTC m=+1468.231636723 I0617 03:12:13.405061 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="openstack/libvirt-api-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-api-ca\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:12:13.457592 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/libvirt-api-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-api-ca\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:12:13.992759 1 conditions.go:96] Setting lastTransitionTime for Issuer "libvirt-vnc" condition "Ready" to 2026-06-17 03:12:13.992735364 +0000 UTC m=+1468.844944578 I0617 03:12:14.632831 1 conditions.go:96] Setting lastTransitionTime for Issuer "libvirt-api" condition "Ready" to 2026-06-17 03:12:14.63281361 +0000 UTC m=+1469.485022824 I0617 03:12:56.699551 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-novncproxy-vencrypt" condition "Ready" to 2026-06-17 03:12:56.699508165 +0000 UTC m=+1511.551717339 I0617 03:12:56.700118 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/nova-novncproxy-vencrypt" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0617 03:12:56.700156 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-novncproxy-vencrypt" condition "Issuing" to 2026-06-17 03:12:56.700150212 +0000 UTC m=+1511.552359386 I0617 03:12:56.726389 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/nova-novncproxy-vencrypt" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-novncproxy-vencrypt\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:12:56.726471 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/nova-novncproxy-vencrypt" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0617 03:12:56.726500 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-novncproxy-vencrypt" condition "Issuing" to 2026-06-17 03:12:56.72649572 +0000 UTC m=+1511.578704894 I0617 03:12:58.602421 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/nova-novncproxy-vencrypt" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-novncproxy-vencrypt\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:12:58.626124 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "nova-novncproxy-vencrypt-2724r" condition "Approved" to 2026-06-17 03:12:58.626103876 +0000 UTC m=+1513.478313060 I0617 03:12:58.652409 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "nova-novncproxy-vencrypt-2724r" condition "Ready" to 2026-06-17 03:12:58.652392062 +0000 UTC m=+1513.504601246 I0617 03:12:58.692181 1 conditions.go:192] Found status change for Certificate "nova-novncproxy-vencrypt" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-17 03:12:58.692155232 +0000 UTC m=+1513.544364446 I0617 03:12:58.717933 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/nova-novncproxy-vencrypt" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-novncproxy-vencrypt\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:12:58.720939 1 conditions.go:192] Found status change for Certificate "nova-novncproxy-vencrypt" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-17 03:12:58.720927464 +0000 UTC m=+1513.573136658 I0617 03:12:58.751244 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/nova-novncproxy-vencrypt" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-novncproxy-vencrypt\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:12:58.752717 1 conditions.go:192] Found status change for Certificate "nova-novncproxy-vencrypt" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-17 03:12:58.752707335 +0000 UTC m=+1513.604916519 I0617 03:15:32.487431 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-api-certs" condition "Ready" to 2026-06-17 03:15:32.487411277 +0000 UTC m=+1667.339620451 I0617 03:15:32.487741 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/nova-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0617 03:15:32.487855 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-api-certs" condition "Issuing" to 2026-06-17 03:15:32.487842068 +0000 UTC m=+1667.340051272 I0617 03:15:32.509809 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/nova-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:15:32.509924 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/nova-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0617 03:15:32.509963 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-api-certs" condition "Issuing" to 2026-06-17 03:15:32.509955985 +0000 UTC m=+1667.362165169 I0617 03:15:32.631655 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "nova-api-certs-tdtsw" condition "Approved" to 2026-06-17 03:15:32.631635856 +0000 UTC m=+1667.483845040 I0617 03:15:32.652920 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "nova-api-certs-tdtsw" condition "Ready" to 2026-06-17 03:15:32.652906012 +0000 UTC m=+1667.505115196 I0617 03:15:32.689576 1 conditions.go:192] Found status change for Certificate "nova-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-17 03:15:32.68955611 +0000 UTC m=+1667.541765274 I0617 03:15:32.707791 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="openstack/nova-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:15:34.205426 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-novncproxy-certs" condition "Ready" to 2026-06-17 03:15:34.205409082 +0000 UTC m=+1669.057618296 I0617 03:15:34.205824 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/nova-novncproxy-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0617 03:15:34.205865 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-novncproxy-certs" condition "Issuing" to 2026-06-17 03:15:34.205857204 +0000 UTC m=+1669.058066418 I0617 03:15:34.223993 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/nova-novncproxy-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-novncproxy-certs\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:15:34.224302 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/nova-novncproxy-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0617 03:15:34.224331 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-novncproxy-certs" condition "Issuing" to 2026-06-17 03:15:34.224322677 +0000 UTC m=+1669.076531881 I0617 03:15:34.472380 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/nova-novncproxy-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-novncproxy-certs\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:15:34.492026 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "nova-novncproxy-certs-kwc9p" condition "Approved" to 2026-06-17 03:15:34.491979982 +0000 UTC m=+1669.344189196 I0617 03:15:34.507181 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "nova-novncproxy-certs-kwc9p" condition "Ready" to 2026-06-17 03:15:34.50716755 +0000 UTC m=+1669.359376734 I0617 03:15:34.560284 1 conditions.go:192] Found status change for Certificate "nova-novncproxy-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-17 03:15:34.560263668 +0000 UTC m=+1669.412472882 I0617 03:15:34.582791 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/nova-novncproxy-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-novncproxy-certs\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:15:34.583196 1 conditions.go:192] Found status change for Certificate "nova-novncproxy-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-17 03:15:34.583189637 +0000 UTC m=+1669.435398811 I0617 03:15:34.618985 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/nova-novncproxy-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-novncproxy-certs\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:18:38.228504 1 conditions.go:203] Setting lastTransitionTime for Certificate "neutron-server-certs" condition "Ready" to 2026-06-17 03:18:38.228473151 +0000 UTC m=+1853.080682365 I0617 03:18:38.228847 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/neutron-server-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0617 03:18:38.228899 1 conditions.go:203] Setting lastTransitionTime for Certificate "neutron-server-certs" condition "Issuing" to 2026-06-17 03:18:38.228891731 +0000 UTC m=+1853.081100935 I0617 03:18:38.246450 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/neutron-server-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"neutron-server-certs\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:18:38.246618 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/neutron-server-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0617 03:18:38.246662 1 conditions.go:203] Setting lastTransitionTime for Certificate "neutron-server-certs" condition "Issuing" to 2026-06-17 03:18:38.246651595 +0000 UTC m=+1853.098860799 I0617 03:18:38.539644 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "neutron-server-certs-ctg5k" condition "Approved" to 2026-06-17 03:18:38.539623757 +0000 UTC m=+1853.391832941 I0617 03:18:38.560810 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "neutron-server-certs-ctg5k" condition "Ready" to 2026-06-17 03:18:38.560795389 +0000 UTC m=+1853.413004573 I0617 03:18:38.594340 1 conditions.go:192] Found status change for Certificate "neutron-server-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-17 03:18:38.594319734 +0000 UTC m=+1853.446528918 I0617 03:18:38.626230 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="openstack/neutron-server-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"neutron-server-certs\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:18:38.681879 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/neutron-server-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"neutron-server-certs\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:19:41.138315 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/libvirt-libvirt-default-f9flm-api" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0617 03:19:41.138345 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-libvirt-default-f9flm-api" condition "Issuing" to 2026-06-17 03:19:41.138338652 +0000 UTC m=+1915.990547826 I0617 03:19:41.138976 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-libvirt-default-f9flm-api" condition "Ready" to 2026-06-17 03:19:41.138970159 +0000 UTC m=+1915.991179333 I0617 03:19:41.141830 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-libvirt-default-f9flm-vnc" condition "Ready" to 2026-06-17 03:19:41.141824073 +0000 UTC m=+1915.994033257 I0617 03:19:41.142059 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/libvirt-libvirt-default-f9flm-vnc" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0617 03:19:41.142076 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-libvirt-default-f9flm-vnc" condition "Issuing" to 2026-06-17 03:19:41.142072479 +0000 UTC m=+1915.994281653 I0617 03:19:41.156464 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/libvirt-libvirt-default-f9flm-api" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-libvirt-default-f9flm-api\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:19:41.156577 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-libvirt-default-f9flm-api" condition "Ready" to 2026-06-17 03:19:41.156564897 +0000 UTC m=+1916.008774081 I0617 03:19:41.166650 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/libvirt-libvirt-default-f9flm-vnc" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-libvirt-default-f9flm-vnc\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:19:41.166712 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/libvirt-libvirt-default-f9flm-vnc" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0617 03:19:41.166728 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-libvirt-default-f9flm-vnc" condition "Issuing" to 2026-06-17 03:19:41.1667233 +0000 UTC m=+1916.018932484 I0617 03:19:41.322653 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/libvirt-libvirt-default-f9flm-vnc" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-libvirt-default-f9flm-vnc\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:19:41.335396 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-libvirt-default-f9flm-vnc-qpg5q" condition "Approved" to 2026-06-17 03:19:41.335059371 +0000 UTC m=+1916.187268555 I0617 03:19:41.359149 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-libvirt-default-f9flm-vnc-qpg5q" condition "Ready" to 2026-06-17 03:19:41.359135907 +0000 UTC m=+1916.211345091 I0617 03:19:41.401732 1 conditions.go:192] Found status change for Certificate "libvirt-libvirt-default-f9flm-vnc" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-17 03:19:41.401709376 +0000 UTC m=+1916.253918580 I0617 03:19:41.428255 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/libvirt-libvirt-default-f9flm-vnc" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-libvirt-default-f9flm-vnc\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:19:41.428870 1 conditions.go:192] Found status change for Certificate "libvirt-libvirt-default-f9flm-vnc" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-17 03:19:41.428859862 +0000 UTC m=+1916.281069036 I0617 03:19:41.432024 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/libvirt-libvirt-default-f9flm-api" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-libvirt-default-f9flm-api\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:19:41.450598 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/libvirt-libvirt-default-f9flm-vnc" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-libvirt-default-f9flm-vnc\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:19:41.470403 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-libvirt-default-f9flm-api-hl2z6" condition "Approved" to 2026-06-17 03:19:41.470383072 +0000 UTC m=+1916.322592256 I0617 03:19:41.508666 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-libvirt-default-f9flm-api-hl2z6" condition "Ready" to 2026-06-17 03:19:41.508647648 +0000 UTC m=+1916.360856822 I0617 03:19:41.537545 1 conditions.go:192] Found status change for Certificate "libvirt-libvirt-default-f9flm-api" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-17 03:19:41.537526749 +0000 UTC m=+1916.389735933 I0617 03:19:41.558175 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/libvirt-libvirt-default-f9flm-api" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-libvirt-default-f9flm-api\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:19:41.559620 1 conditions.go:192] Found status change for Certificate "libvirt-libvirt-default-f9flm-api" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-17 03:19:41.559610564 +0000 UTC m=+1916.411819738 I0617 03:19:41.624033 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/libvirt-libvirt-default-f9flm-api" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-libvirt-default-f9flm-api\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:21:19.918090 1 conditions.go:203] Setting lastTransitionTime for Certificate "senlin-api-certs" condition "Ready" to 2026-06-17 03:21:19.918063856 +0000 UTC m=+2014.770273080 I0617 03:21:19.918282 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/senlin-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0617 03:21:19.918359 1 conditions.go:203] Setting lastTransitionTime for Certificate "senlin-api-certs" condition "Issuing" to 2026-06-17 03:21:19.918346573 +0000 UTC m=+2014.770555757 I0617 03:21:19.941623 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/senlin-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"senlin-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:21:19.941799 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/senlin-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0617 03:21:19.941831 1 conditions.go:203] Setting lastTransitionTime for Certificate "senlin-api-certs" condition "Issuing" to 2026-06-17 03:21:19.941824745 +0000 UTC m=+2014.794033919 I0617 03:21:20.120866 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "senlin-api-certs-xlzk2" condition "Approved" to 2026-06-17 03:21:20.120836742 +0000 UTC m=+2014.973045956 I0617 03:21:20.143245 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "senlin-api-certs-xlzk2" condition "Ready" to 2026-06-17 03:21:20.143186084 +0000 UTC m=+2014.995395578 I0617 03:21:20.173220 1 conditions.go:192] Found status change for Certificate "senlin-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-17 03:21:20.173199985 +0000 UTC m=+2015.025409209 I0617 03:21:20.207738 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/senlin-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"senlin-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:21:20.208337 1 conditions.go:192] Found status change for Certificate "senlin-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-17 03:21:20.208329239 +0000 UTC m=+2015.060538423 I0617 03:21:20.219342 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="openstack/senlin-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"senlin-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:21:20.243492 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/senlin-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"senlin-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:25:37.224609 1 conditions.go:203] Setting lastTransitionTime for Certificate "heat-api-certs" condition "Ready" to 2026-06-17 03:25:37.224581122 +0000 UTC m=+2272.076790306 I0617 03:25:37.224846 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/heat-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0617 03:25:37.224889 1 conditions.go:203] Setting lastTransitionTime for Certificate "heat-api-certs" condition "Issuing" to 2026-06-17 03:25:37.224883099 +0000 UTC m=+2272.077092273 I0617 03:25:37.242406 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/heat-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"heat-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:25:37.242631 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/heat-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0617 03:25:37.242703 1 conditions.go:203] Setting lastTransitionTime for Certificate "heat-api-certs" condition "Issuing" to 2026-06-17 03:25:37.242676032 +0000 UTC m=+2272.094885216 I0617 03:25:37.400286 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/heat-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"heat-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:25:37.409046 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "heat-api-certs-f4rxj" condition "Approved" to 2026-06-17 03:25:37.409027143 +0000 UTC m=+2272.261236337 I0617 03:25:37.438497 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "heat-api-certs-f4rxj" condition "Ready" to 2026-06-17 03:25:37.438480778 +0000 UTC m=+2272.290689982 I0617 03:25:37.468564 1 conditions.go:192] Found status change for Certificate "heat-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-17 03:25:37.468549829 +0000 UTC m=+2272.320759003 I0617 03:25:37.491735 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="openstack/heat-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"heat-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:25:37.501174 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="openstack/heat-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"heat-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:25:37.551729 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/heat-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"heat-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:25:38.879166 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/heat-cfn-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0617 03:25:38.879214 1 conditions.go:203] Setting lastTransitionTime for Certificate "heat-cfn-certs" condition "Ready" to 2026-06-17 03:25:38.879193136 +0000 UTC m=+2273.731402320 I0617 03:25:38.879201 1 conditions.go:203] Setting lastTransitionTime for Certificate "heat-cfn-certs" condition "Issuing" to 2026-06-17 03:25:38.879193386 +0000 UTC m=+2273.731402570 I0617 03:25:38.895164 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/heat-cfn-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"heat-cfn-certs\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:25:38.895248 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/heat-cfn-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0617 03:25:38.895265 1 conditions.go:203] Setting lastTransitionTime for Certificate "heat-cfn-certs" condition "Issuing" to 2026-06-17 03:25:38.895259073 +0000 UTC m=+2273.747468247 I0617 03:25:39.388012 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/heat-cfn-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"heat-cfn-certs\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:25:39.414240 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "heat-cfn-certs-d5t95" condition "Approved" to 2026-06-17 03:25:39.414222045 +0000 UTC m=+2274.266431249 I0617 03:25:39.527345 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "heat-cfn-certs-d5t95" condition "Ready" to 2026-06-17 03:25:39.527333913 +0000 UTC m=+2274.379543087 I0617 03:25:39.820906 1 conditions.go:192] Found status change for Certificate "heat-cfn-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-17 03:25:39.820893319 +0000 UTC m=+2274.673102503 I0617 03:25:39.847947 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="openstack/heat-cfn-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"heat-cfn-certs\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:28:13.177117 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/octavia-client-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0617 03:28:13.177105 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-client-ca" condition "Ready" to 2026-06-17 03:28:13.17705367 +0000 UTC m=+2428.029262874 I0617 03:28:13.177161 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-client-ca" condition "Issuing" to 2026-06-17 03:28:13.177151903 +0000 UTC m=+2428.029361117 E0617 03:28:13.371363 1 setup.go:48] "cert-manager/issuers/setup: error getting signing CA TLS certificate" err="secret \"octavia-client-ca\" not found" resource_name="octavia-client" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0617 03:28:13.371595 1 conditions.go:96] Setting lastTransitionTime for Issuer "octavia-client" condition "Ready" to 2026-06-17 03:28:13.37158062 +0000 UTC m=+2428.223789824 I0617 03:28:13.371737 1 sync.go:62] "cert-manager/issuers: Error initializing issuer: secret \"octavia-client-ca\" not found" resource_name="octavia-client" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0617 03:28:13.375994 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/octavia-client-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-client-ca\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:28:13.376092 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/octavia-client-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0617 03:28:13.376113 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-client-ca" condition "Issuing" to 2026-06-17 03:28:13.376105897 +0000 UTC m=+2428.228315081 E0617 03:28:13.580973 1 controller.go:167] "cert-manager/issuers: re-queuing item due to error processing" err="secret \"octavia-client-ca\" not found" key="openstack/octavia-client" E0617 03:28:13.581565 1 setup.go:48] "cert-manager/issuers/setup: error getting signing CA TLS certificate" err="secret \"octavia-client-ca\" not found" resource_name="octavia-client" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0617 03:28:13.581750 1 sync.go:62] "cert-manager/issuers: Error initializing issuer: secret \"octavia-client-ca\" not found" resource_name="octavia-client" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0617 03:28:13.582001 1 controller.go:167] "cert-manager/issuers: re-queuing item due to error processing" err="secret \"octavia-client-ca\" not found" key="openstack/octavia-client" I0617 03:28:14.071251 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-client-ca-f6qnw" condition "Approved" to 2026-06-17 03:28:14.071233415 +0000 UTC m=+2428.923442599 I0617 03:28:14.089373 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-client-ca-f6qnw" condition "Ready" to 2026-06-17 03:28:14.089360785 +0000 UTC m=+2428.941569969 I0617 03:28:14.122641 1 conditions.go:192] Found status change for Certificate "octavia-client-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-17 03:28:14.122619147 +0000 UTC m=+2428.974828331 I0617 03:28:14.149361 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/octavia-client-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-client-ca\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:28:14.149534 1 conditions.go:192] Found status change for Certificate "octavia-client-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-17 03:28:14.149527944 +0000 UTC m=+2429.001737128 I0617 03:28:14.157220 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/octavia-server-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0617 03:28:14.157250 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-server-ca" condition "Issuing" to 2026-06-17 03:28:14.157243084 +0000 UTC m=+2429.009452258 I0617 03:28:14.157851 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-server-ca" condition "Ready" to 2026-06-17 03:28:14.157846439 +0000 UTC m=+2429.010055603 I0617 03:28:14.181580 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/octavia-client-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-client-ca\": the object has been modified; please apply your changes to the latest version and try again" E0617 03:28:14.184705 1 setup.go:48] "cert-manager/issuers/setup: error getting signing CA TLS certificate" err="secret \"octavia-server-ca\" not found" resource_name="octavia-server" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0617 03:28:14.184748 1 conditions.go:96] Setting lastTransitionTime for Issuer "octavia-server" condition "Ready" to 2026-06-17 03:28:14.184739296 +0000 UTC m=+2429.036948470 I0617 03:28:14.184791 1 sync.go:62] "cert-manager/issuers: Error initializing issuer: secret \"octavia-server-ca\" not found" resource_name="octavia-server" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0617 03:28:14.186902 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/octavia-server-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-server-ca\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:28:14.187032 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-server-ca" condition "Ready" to 2026-06-17 03:28:14.187022016 +0000 UTC m=+2429.039231200 E0617 03:28:14.197998 1 controller.go:167] "cert-manager/issuers: re-queuing item due to error processing" err="secret \"octavia-server-ca\" not found" key="openstack/octavia-server" E0617 03:28:14.198234 1 setup.go:48] "cert-manager/issuers/setup: error getting signing CA TLS certificate" err="secret \"octavia-server-ca\" not found" resource_name="octavia-server" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0617 03:28:14.198284 1 sync.go:62] "cert-manager/issuers: Error initializing issuer: secret \"octavia-server-ca\" not found" resource_name="octavia-server" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0617 03:28:14.198368 1 controller.go:167] "cert-manager/issuers: re-queuing item due to error processing" err="secret \"octavia-server-ca\" not found" key="openstack/octavia-server" I0617 03:28:14.203473 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/octavia-server-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-server-ca\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:28:14.234401 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-server-ca-kz2dp" condition "Approved" to 2026-06-17 03:28:14.234386122 +0000 UTC m=+2429.086595306 I0617 03:28:14.256697 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-server-ca-kz2dp" condition "Ready" to 2026-06-17 03:28:14.25668074 +0000 UTC m=+2429.108890134 I0617 03:28:14.287161 1 conditions.go:192] Found status change for Certificate "octavia-server-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-17 03:28:14.287149659 +0000 UTC m=+2429.139358873 I0617 03:28:14.323804 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/octavia-server-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-server-ca\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:28:14.324013 1 conditions.go:192] Found status change for Certificate "octavia-server-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-17 03:28:14.324005734 +0000 UTC m=+2429.176214918 I0617 03:28:14.324462 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="openstack/octavia-server-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-server-ca\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:28:14.355739 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/octavia-server-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-server-ca\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:28:14.960743 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/octavia-client-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0617 03:28:14.960790 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-client-certs" condition "Issuing" to 2026-06-17 03:28:14.960781451 +0000 UTC m=+2429.812990635 I0617 03:28:14.960891 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-client-certs" condition "Ready" to 2026-06-17 03:28:14.960871693 +0000 UTC m=+2429.813080877 I0617 03:28:14.979903 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/octavia-client-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-client-certs\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:28:14.980012 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-client-certs" condition "Ready" to 2026-06-17 03:28:14.980002059 +0000 UTC m=+2429.832211243 I0617 03:28:15.003919 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/octavia-client-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-client-certs\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:28:15.057095 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-client-certs-f2bfc" condition "Approved" to 2026-06-17 03:28:15.057081625 +0000 UTC m=+2429.909290809 I0617 03:28:15.076525 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-client-certs-f2bfc" condition "Ready" to 2026-06-17 03:28:15.076500649 +0000 UTC m=+2429.928709833 I0617 03:28:18.582175 1 conditions.go:85] Found status change for Issuer "octavia-client" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-17 03:28:18.58216509 +0000 UTC m=+2433.434374264 I0617 03:28:18.594474 1 conditions.go:252] Found status change for CertificateRequest "octavia-client-certs-f2bfc" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-17 03:28:18.594455397 +0000 UTC m=+2433.446664601 I0617 03:28:18.620663 1 conditions.go:192] Found status change for Certificate "octavia-client-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-17 03:28:18.620647297 +0000 UTC m=+2433.472856481 I0617 03:28:18.642475 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/octavia-client-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-client-certs\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:28:18.642939 1 conditions.go:192] Found status change for Certificate "octavia-client-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-17 03:28:18.642930483 +0000 UTC m=+2433.495139667 I0617 03:28:18.667250 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/octavia-client-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-client-certs\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:28:19.198220 1 conditions.go:85] Found status change for Issuer "octavia-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-17 03:28:19.198203148 +0000 UTC m=+2434.050412322 I0617 03:30:29.621767 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-api-certs" condition "Ready" to 2026-06-17 03:30:29.621742078 +0000 UTC m=+2564.473951272 I0617 03:30:29.624582 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/octavia-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0617 03:30:29.624643 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-api-certs" condition "Issuing" to 2026-06-17 03:30:29.624628622 +0000 UTC m=+2564.476837836 I0617 03:30:29.645331 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/octavia-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:30:29.645427 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/octavia-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0617 03:30:29.645461 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-api-certs" condition "Issuing" to 2026-06-17 03:30:29.645453432 +0000 UTC m=+2564.497662626 I0617 03:30:30.004218 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/octavia-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:30:30.017292 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-api-certs-8zz2w" condition "Approved" to 2026-06-17 03:30:30.017270397 +0000 UTC m=+2564.869479581 I0617 03:30:30.041734 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-api-certs-8zz2w" condition "Ready" to 2026-06-17 03:30:30.041718821 +0000 UTC m=+2564.893928005 I0617 03:30:30.073281 1 conditions.go:192] Found status change for Certificate "octavia-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-17 03:30:30.073265848 +0000 UTC m=+2564.925475032 I0617 03:30:30.103914 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/octavia-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:30:30.104640 1 conditions.go:192] Found status change for Certificate "octavia-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-17 03:30:30.10463375 +0000 UTC m=+2564.956842934 I0617 03:30:30.120391 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/octavia-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:30:30.120958 1 conditions.go:192] Found status change for Certificate "octavia-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-17 03:30:30.120949154 +0000 UTC m=+2564.973158328 I0617 03:31:17.581590 1 conditions.go:96] Setting lastTransitionTime for Issuer "test-selfsigned" condition "Ready" to 2026-06-17 03:31:17.58157308 +0000 UTC m=+2612.433782264 I0617 03:31:17.605796 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="cert-manager-test/selfsigned-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0617 03:31:17.605866 1 conditions.go:203] Setting lastTransitionTime for Certificate "selfsigned-cert" condition "Issuing" to 2026-06-17 03:31:17.605857598 +0000 UTC m=+2612.458066782 I0617 03:31:17.605868 1 conditions.go:203] Setting lastTransitionTime for Certificate "selfsigned-cert" condition "Ready" to 2026-06-17 03:31:17.605833327 +0000 UTC m=+2612.458042501 I0617 03:31:17.630136 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="cert-manager-test/selfsigned-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"selfsigned-cert\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:31:17.630216 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="cert-manager-test/selfsigned-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0617 03:31:17.630239 1 conditions.go:203] Setting lastTransitionTime for Certificate "selfsigned-cert" condition "Issuing" to 2026-06-17 03:31:17.63023223 +0000 UTC m=+2612.482441414 E0617 03:31:17.640889 1 controller.go:134] "cert-manager/issuers: issuer in work queue no longer exists" err="issuer.cert-manager.io \"test-selfsigned\" not found" E0617 03:31:17.642863 1 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"selfsigned-cert.18b9c0c476b46840", GenerateName:"", Namespace:"cert-manager-test", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Certificate", Namespace:"cert-manager-test", Name:"selfsigned-cert", UID:"f9ddb645-e00a-4c7e-ba75-962d03389b89", APIVersion:"cert-manager.io/v1", ResourceVersion:"26038", FieldPath:""}, Reason:"Issuing", Message:"Issuing certificate as Secret does not exist", Source:v1.EventSource{Component:"cert-manager-certificates-trigger", Host:""}, FirstTimestamp:time.Date(2026, time.June, 17, 3, 31, 17, 639399488, time.Local), LastTimestamp:time.Date(2026, time.June, 17, 3, 31, 17, 639399488, time.Local), Count:1, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "selfsigned-cert.18b9c0c476b46840" is forbidden: unable to create new content in namespace cert-manager-test because it is being terminated' (will not retry!) I0617 03:31:17.700698 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-selfsigned-issuer" condition "Ready" to 2026-06-17 03:31:17.700668336 +0000 UTC m=+2612.552877540 I0617 03:31:17.722400 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Ready" to 2026-06-17 03:31:17.722383658 +0000 UTC m=+2612.574592842 I0617 03:31:17.722801 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="capi-system/capi-serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0617 03:31:17.722832 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Issuing" to 2026-06-17 03:31:17.722826259 +0000 UTC m=+2612.575035443 I0617 03:31:17.742041 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="capi-system/capi-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:31:17.742268 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="capi-system/capi-serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0617 03:31:17.742365 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Issuing" to 2026-06-17 03:31:17.742355695 +0000 UTC m=+2612.594564879 E0617 03:31:17.751286 1 controller.go:167] "cert-manager/certificates-key-manager: re-queuing item due to error processing" err="secrets \"selfsigned-cert-\" is forbidden: unable to create new content in namespace cert-manager-test because it is being terminated" key="cert-manager-test/selfsigned-cert" I0617 03:31:17.981137 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-serving-cert-gctvd" condition "Approved" to 2026-06-17 03:31:17.981117262 +0000 UTC m=+2612.833326436 I0617 03:31:18.009933 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-serving-cert-gctvd" condition "Ready" to 2026-06-17 03:31:18.009920929 +0000 UTC m=+2612.862130113 I0617 03:31:18.053256 1 conditions.go:192] Found status change for Certificate "capi-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-17 03:31:18.053239041 +0000 UTC m=+2612.905448215 I0617 03:31:18.080932 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="capi-system/capi-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:31:18.663997 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-kubeadm-bootstrap-selfsigned-issuer" condition "Ready" to 2026-06-17 03:31:18.663981579 +0000 UTC m=+2613.516190753 I0617 03:31:18.690682 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0617 03:31:18.690718 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready" to 2026-06-17 03:31:18.690696291 +0000 UTC m=+2613.542905465 I0617 03:31:18.690725 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Issuing" to 2026-06-17 03:31:18.690717591 +0000 UTC m=+2613.542926765 I0617 03:31:18.718314 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:31:18.718408 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready" to 2026-06-17 03:31:18.718400888 +0000 UTC m=+2613.570610072 I0617 03:31:18.917411 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:31:18.978476 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-bootstrap-serving-cert-f94dm" condition "Approved" to 2026-06-17 03:31:18.978453947 +0000 UTC m=+2613.830663131 I0617 03:31:19.001811 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-bootstrap-serving-cert-f94dm" condition "Ready" to 2026-06-17 03:31:19.001797762 +0000 UTC m=+2613.854006956 I0617 03:31:19.035092 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-17 03:31:19.035077625 +0000 UTC m=+2613.887286809 I0617 03:31:19.054264 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:31:19.142116 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-kubeadm-control-plane-selfsigned-issuer" condition "Ready" to 2026-06-17 03:31:19.142098298 +0000 UTC m=+2613.994307482 I0617 03:31:19.170480 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready" to 2026-06-17 03:31:19.170461433 +0000 UTC m=+2614.022670617 I0617 03:31:19.170791 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0617 03:31:19.170846 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Issuing" to 2026-06-17 03:31:19.170839393 +0000 UTC m=+2614.023048567 I0617 03:31:19.228247 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:31:19.228364 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0617 03:31:19.228405 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Issuing" to 2026-06-17 03:31:19.228395894 +0000 UTC m=+2614.080605098 I0617 03:31:19.440175 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-control-plane-serving-cert-292g4" condition "Approved" to 2026-06-17 03:31:19.440159342 +0000 UTC m=+2614.292368516 I0617 03:31:19.462215 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-control-plane-serving-cert-292g4" condition "Ready" to 2026-06-17 03:31:19.462202613 +0000 UTC m=+2614.314411777 I0617 03:31:19.497766 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-17 03:31:19.497746535 +0000 UTC m=+2614.349955719 I0617 03:31:19.515298 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:31:19.737137 1 conditions.go:96] Setting lastTransitionTime for Issuer "capo-selfsigned-issuer" condition "Ready" to 2026-06-17 03:31:19.737118897 +0000 UTC m=+2614.589328081 I0617 03:31:19.757827 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Ready" to 2026-06-17 03:31:19.757811913 +0000 UTC m=+2614.610021097 I0617 03:31:19.758200 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="capo-system/capo-serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0617 03:31:19.758237 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Issuing" to 2026-06-17 03:31:19.758230405 +0000 UTC m=+2614.610439579 I0617 03:31:19.774018 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="capo-system/capo-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:31:19.774192 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Ready" to 2026-06-17 03:31:19.774180967 +0000 UTC m=+2614.626390181 I0617 03:31:20.015693 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="capo-system/capo-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:31:20.054759 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capo-serving-cert-8fs9b" condition "Approved" to 2026-06-17 03:31:20.054745138 +0000 UTC m=+2614.906954322 I0617 03:31:20.134527 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capo-serving-cert-8fs9b" condition "Ready" to 2026-06-17 03:31:20.134514545 +0000 UTC m=+2614.986723719 I0617 03:31:20.546864 1 conditions.go:192] Found status change for Certificate "capo-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-17 03:31:20.54684083 +0000 UTC m=+2615.399050044 I0617 03:31:20.692671 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="capo-system/capo-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:31:20.693254 1 conditions.go:192] Found status change for Certificate "capo-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-17 03:31:20.693242443 +0000 UTC m=+2615.545451617 I0617 03:31:20.895688 1 conditions.go:192] Found status change for Certificate "capo-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-17 03:31:20.895670219 +0000 UTC m=+2615.747879413 I0617 03:31:20.939973 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="capo-system/capo-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:31:20.991723 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="capo-system/capo-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:31:21.045938 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="capo-system/capo-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:36:00.681966 1 conditions.go:203] Setting lastTransitionTime for Certificate "magnum-api-certs" condition "Ready" to 2026-06-17 03:36:00.681940587 +0000 UTC m=+2895.534149801 I0617 03:36:00.682658 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/magnum-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0617 03:36:00.682734 1 conditions.go:203] Setting lastTransitionTime for Certificate "magnum-api-certs" condition "Issuing" to 2026-06-17 03:36:00.682726198 +0000 UTC m=+2895.534935402 I0617 03:36:00.700362 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/magnum-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"magnum-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:36:00.700452 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/magnum-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0617 03:36:00.700476 1 conditions.go:203] Setting lastTransitionTime for Certificate "magnum-api-certs" condition "Issuing" to 2026-06-17 03:36:00.70046951 +0000 UTC m=+2895.552678694 I0617 03:36:01.009522 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/magnum-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"magnum-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:36:01.021041 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "magnum-api-certs-mnkk5" condition "Approved" to 2026-06-17 03:36:01.021029508 +0000 UTC m=+2895.873238672 I0617 03:36:01.046826 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "magnum-api-certs-mnkk5" condition "Ready" to 2026-06-17 03:36:01.046809149 +0000 UTC m=+2895.899018363 I0617 03:36:01.082366 1 conditions.go:192] Found status change for Certificate "magnum-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-17 03:36:01.082353914 +0000 UTC m=+2895.934563098 I0617 03:36:01.105704 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/magnum-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"magnum-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:36:01.110079 1 conditions.go:192] Found status change for Certificate "magnum-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-17 03:36:01.110068766 +0000 UTC m=+2895.962277950 I0617 03:36:01.130204 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/magnum-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"magnum-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:36:01.131985 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/magnum-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"magnum-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:36:01.132680 1 conditions.go:192] Found status change for Certificate "magnum-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-17 03:36:01.132671613 +0000 UTC m=+2895.984880797 I0617 03:36:04.656460 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/magnum-registry-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0617 03:36:04.656498 1 conditions.go:203] Setting lastTransitionTime for Certificate "magnum-registry-certs" condition "Issuing" to 2026-06-17 03:36:04.656489214 +0000 UTC m=+2899.508698418 I0617 03:36:04.656691 1 conditions.go:203] Setting lastTransitionTime for Certificate "magnum-registry-certs" condition "Ready" to 2026-06-17 03:36:04.65668434 +0000 UTC m=+2899.508893534 I0617 03:36:04.675528 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/magnum-registry-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"magnum-registry-certs\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:36:04.675688 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/magnum-registry-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0617 03:36:04.675724 1 conditions.go:203] Setting lastTransitionTime for Certificate "magnum-registry-certs" condition "Issuing" to 2026-06-17 03:36:04.675715735 +0000 UTC m=+2899.527924939 I0617 03:36:05.023392 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "magnum-registry-certs-2sgl9" condition "Approved" to 2026-06-17 03:36:05.023379619 +0000 UTC m=+2899.875588783 I0617 03:36:05.048899 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "magnum-registry-certs-2sgl9" condition "Ready" to 2026-06-17 03:36:05.048883132 +0000 UTC m=+2899.901092336 I0617 03:36:05.076634 1 conditions.go:192] Found status change for Certificate "magnum-registry-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-17 03:36:05.076619233 +0000 UTC m=+2899.928828417 I0617 03:36:05.100306 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/magnum-registry-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"magnum-registry-certs\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:36:05.100896 1 conditions.go:192] Found status change for Certificate "magnum-registry-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-17 03:36:05.100886985 +0000 UTC m=+2899.953096159 I0617 03:36:05.109968 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="openstack/magnum-registry-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"magnum-registry-certs\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:36:05.119721 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/magnum-registry-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"magnum-registry-certs\": the object has been modified; please apply your changes to the latest version and try again" I0617 03:36:05.120478 1 conditions.go:192] Found status change for Certificate "magnum-registry-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-17 03:36:05.120468955 +0000 UTC m=+2899.972678139