I0723 23:49:07.647817 1 controller.go:284] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0723 23:49:07.648019 1 client_config.go:659] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0723 23:49:07.652873 1 controller.go:89] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0723 23:49:07.652917 1 controller.go:435] "serving insecurely as tls certificate data not provided" logger="cert-manager.controller" I0723 23:49:07.652928 1 controller.go:102] "listening for insecure connections" logger="cert-manager.controller" address="0.0.0.0:9402" I0723 23:49:07.653319 1 controller.go:178] "starting leader election" logger="cert-manager.controller" I0723 23:49:07.653376 1 controller.go:127] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0723 23:49:07.653400 1 controller.go:171] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0723 23:49:07.659155 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0723 23:49:07.674402 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0723 23:49:07.674748 1 controller.go:225] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0723 23:49:07.679282 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0723 23:49:07.684156 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0723 23:49:07.691353 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0723 23:49:07.696534 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0723 23:49:07.700664 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0723 23:49:07.702760 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0723 23:49:07.704626 1 controller.go:225] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0723 23:49:07.704748 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0723 23:49:07.707587 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0723 23:49:07.713750 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0723 23:49:07.716769 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0723 23:49:07.720837 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0723 23:49:07.723453 1 controller.go:225] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0723 23:49:07.723603 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0723 23:49:07.726318 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0723 23:49:07.728851 1 controller.go:225] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0723 23:49:07.728926 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="orders" I0723 23:49:07.732689 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0723 23:49:07.736933 1 controller.go:225] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0723 23:49:07.736963 1 controller.go:225] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0723 23:49:07.737139 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0723 23:49:07.739672 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="issuers" I0723 23:49:07.742653 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="challenges" I0723 23:49:07.745018 1 reflector.go:359] Caches populated for *v1.Secret from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0723 23:49:07.745523 1 reflector.go:359] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0723 23:49:07.746373 1 reflector.go:359] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0723 23:49:07.746437 1 reflector.go:359] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0723 23:49:07.747565 1 reflector.go:359] Caches populated for *v1.Ingress from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0723 23:49:07.760445 1 reflector.go:359] Caches populated for *v1.Order from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0723 23:49:07.777344 1 reflector.go:359] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0723 23:49:07.794310 1 reflector.go:359] Caches populated for *v1.Certificate from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0723 23:49:07.814991 1 reflector.go:359] Caches populated for *v1.Challenge from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0723 23:49:07.833216 1 reflector.go:359] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0723 23:49:07.851949 1 reflector.go:359] Caches populated for *v1.Issuer from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0723 23:49:21.464620 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-07-23 23:49:21.464587859 +0000 UTC m=+13.843440486 I0723 23:49:22.208863 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-07-23 23:49:22.208848531 +0000 UTC m=+14.587701128 I0723 23:49:22.209409 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0723 23:49:22.209560 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-07-23 23:49:22.209519114 +0000 UTC m=+14.588371761 I0723 23:49:22.222316 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0723 23:49:22.222535 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0723 23:49:22.222610 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-07-23 23:49:22.222569348 +0000 UTC m=+14.601421985 E0723 23:49:22.224373 1 setup.go:48] "error getting signing CA TLS certificate" err="secrets \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.controller.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0723 23:49:22.224479 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-07-23 23:49:22.224471665 +0000 UTC m=+14.603324272 E0723 23:49:22.224522 1 sync.go:62] "error setting up issuer" err="secrets \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.controller" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0723 23:49:22.234846 1 controller.go:162] "re-queuing item due to error processing" err="secrets \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.controller" key="atmosphere" E0723 23:49:22.235304 1 setup.go:48] "error getting signing CA TLS certificate" err="secrets \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.controller.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0723 23:49:22.235495 1 sync.go:62] "error setting up issuer" err="secrets \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.controller" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0723 23:49:22.235677 1 controller.go:162] "re-queuing item due to error processing" err="secrets \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.controller" key="atmosphere" I0723 23:49:22.259772 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0723 23:49:22.272248 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-1" condition "Approved" to 2026-07-23 23:49:22.272235204 +0000 UTC m=+14.651087831 I0723 23:49:22.294428 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-1" condition "Ready" to 2026-07-23 23:49:22.294409846 +0000 UTC m=+14.673262473 I0723 23:49:22.330529 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-07-23 23:49:22.330512939 +0000 UTC m=+14.709365556 I0723 23:49:22.346336 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0723 23:49:22.385419 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0723 23:49:27.236221 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-07-23 23:49:27.236205713 +0000 UTC m=+19.615058340 I0723 23:49:48.217710 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0723 23:49:48.217750 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-07-23 23:49:48.217707781 +0000 UTC m=+40.596560418 I0723 23:49:48.217785 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-07-23 23:49:48.217776002 +0000 UTC m=+40.596628599 I0723 23:49:48.227484 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-07-23 23:49:48.227474831 +0000 UTC m=+40.606327438 I0723 23:49:48.231451 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0723 23:49:48.231739 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0723 23:49:48.231840 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-07-23 23:49:48.231828986 +0000 UTC m=+40.610681593 I0723 23:49:48.467957 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-1" condition "Approved" to 2026-07-23 23:49:48.46794271 +0000 UTC m=+40.846795337 I0723 23:49:48.496062 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-1" condition "Ready" to 2026-07-23 23:49:48.496043547 +0000 UTC m=+40.874896184 I0723 23:49:48.520087 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-07-23 23:49:48.520065114 +0000 UTC m=+40.898917751 I0723 23:49:48.541798 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0723 23:51:55.608954 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0723 23:51:55.609051 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-07-23 23:51:55.609023099 +0000 UTC m=+167.987875726 I0723 23:51:55.609691 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-07-23 23:51:55.609682441 +0000 UTC m=+167.988535068 E0723 23:51:55.621784 1 setup.go:48] "error getting signing CA TLS certificate" err="secrets \"valkey-ca\" not found" logger="cert-manager.controller.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0723 23:51:55.621915 1 conditions.go:96] Setting lastTransitionTime for Issuer "valkey" condition "Ready" to 2026-07-23 23:51:55.621903889 +0000 UTC m=+168.000756516 I0723 23:51:55.621954 1 sync.go:62] "Error initializing issuer: secrets \"valkey-ca\" not found" logger="cert-manager.controller" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0723 23:51:55.622869 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0723 23:51:55.622982 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-07-23 23:51:55.6229736 +0000 UTC m=+168.001826237 E0723 23:51:55.633359 1 controller.go:162] "re-queuing item due to error processing" err="secrets \"valkey-ca\" not found" logger="cert-manager.controller" key="openstack/valkey" E0723 23:51:55.633503 1 setup.go:48] "error getting signing CA TLS certificate" err="secrets \"valkey-ca\" not found" logger="cert-manager.controller.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0723 23:51:55.633540 1 sync.go:62] "Error initializing issuer: secrets \"valkey-ca\" not found" logger="cert-manager.controller" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0723 23:51:55.634244 1 controller.go:162] "re-queuing item due to error processing" err="secrets \"valkey-ca\" not found" logger="cert-manager.controller" key="openstack/valkey" I0723 23:51:55.634408 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0723 23:51:55.634415 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-07-23 23:51:55.63439593 +0000 UTC m=+168.013248557 I0723 23:51:55.634440 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-07-23 23:51:55.634432501 +0000 UTC m=+168.013285108 I0723 23:51:55.644346 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0723 23:51:55.644458 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-07-23 23:51:55.644446985 +0000 UTC m=+168.023299612 I0723 23:51:55.847704 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0723 23:51:55.882543 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-1" condition "Approved" to 2026-07-23 23:51:55.882509397 +0000 UTC m=+168.261362024 I0723 23:51:55.902496 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-1" condition "Ready" to 2026-07-23 23:51:55.902481764 +0000 UTC m=+168.281334391 I0723 23:51:55.925803 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-07-23 23:51:55.925786976 +0000 UTC m=+168.304639613 I0723 23:51:55.938787 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0723 23:51:56.096955 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0723 23:51:56.121203 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-1" condition "Approved" to 2026-07-23 23:51:56.121189302 +0000 UTC m=+168.500041899 I0723 23:51:56.139222 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-1" condition "Ready" to 2026-07-23 23:51:56.13918598 +0000 UTC m=+168.518038607 I0723 23:52:00.634870 1 conditions.go:85] Found status change for Issuer "valkey" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-07-23 23:52:00.634853097 +0000 UTC m=+173.013705724 I0723 23:52:00.649839 1 conditions.go:252] Found status change for CertificateRequest "valkey-server-1" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-07-23 23:52:00.649820236 +0000 UTC m=+173.028672863 I0723 23:52:00.674835 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-07-23 23:52:00.674817187 +0000 UTC m=+173.053669824 I0723 23:52:00.687315 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0723 23:52:00.688023 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-07-23 23:52:00.688013111 +0000 UTC m=+173.066865738 I0723 23:52:00.704161 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0723 23:54:33.271740 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-229.nip.io-tls" condition "Ready" to 2026-07-23 23:54:33.271697995 +0000 UTC m=+325.650550622 I0723 23:54:33.272038 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="auth-system/keycloak.199-204-45-229.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0723 23:54:33.272090 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-229.nip.io-tls" condition "Issuing" to 2026-07-23 23:54:33.272081963 +0000 UTC m=+325.650934570 I0723 23:54:33.283363 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="auth-system/keycloak.199-204-45-229.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-229.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0723 23:54:33.283429 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="auth-system/keycloak.199-204-45-229.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0723 23:54:33.283450 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-229.nip.io-tls" condition "Issuing" to 2026-07-23 23:54:33.283445891 +0000 UTC m=+325.662298498 I0723 23:54:33.645270 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="auth-system/keycloak.199-204-45-229.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-229.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0723 23:54:33.661474 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-229.nip.io-tls-1" condition "Approved" to 2026-07-23 23:54:33.661443894 +0000 UTC m=+326.040296531 I0723 23:54:33.676966 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-229.nip.io-tls-1" condition "Ready" to 2026-07-23 23:54:33.676952483 +0000 UTC m=+326.055805090 I0723 23:54:33.699492 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-229.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-07-23 23:54:33.699479836 +0000 UTC m=+326.078332443 I0723 23:54:33.713563 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="auth-system/keycloak.199-204-45-229.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-229.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0723 23:54:33.714639 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-229.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-07-23 23:54:33.714626278 +0000 UTC m=+326.093478915 I0723 23:54:33.722549 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="auth-system/keycloak.199-204-45-229.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-229.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0723 23:54:33.730157 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="auth-system/keycloak.199-204-45-229.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-229.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0723 23:55:43.754889 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0723 23:55:43.754954 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-07-23 23:55:43.754923422 +0000 UTC m=+396.133776029 I0723 23:55:43.755035 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-07-23 23:55:43.755024784 +0000 UTC m=+396.133877391 I0723 23:55:43.765186 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0723 23:55:43.765289 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0723 23:55:43.765314 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-07-23 23:55:43.765306292 +0000 UTC m=+396.144158899 E0723 23:55:43.770579 1 setup.go:48] "error getting signing CA TLS certificate" err="secrets \"kube-prometheus-stack-ca\" not found" logger="cert-manager.controller.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0723 23:55:43.770774 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-07-23 23:55:43.770763177 +0000 UTC m=+396.149615804 E0723 23:55:43.770874 1 sync.go:62] "error setting up issuer" err="secrets \"kube-prometheus-stack-ca\" not found" logger="cert-manager.controller" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0723 23:55:43.778693 1 controller.go:162] "re-queuing item due to error processing" err="secrets \"kube-prometheus-stack-ca\" not found" logger="cert-manager.controller" key="kube-prometheus-stack" E0723 23:55:43.778799 1 setup.go:48] "error getting signing CA TLS certificate" err="secrets \"kube-prometheus-stack-ca\" not found" logger="cert-manager.controller.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0723 23:55:43.778845 1 sync.go:62] "error setting up issuer" err="secrets \"kube-prometheus-stack-ca\" not found" logger="cert-manager.controller" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0723 23:55:43.778996 1 controller.go:162] "re-queuing item due to error processing" err="secrets \"kube-prometheus-stack-ca\" not found" logger="cert-manager.controller" key="kube-prometheus-stack" I0723 23:55:43.807335 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-1" condition "Approved" to 2026-07-23 23:55:43.807317442 +0000 UTC m=+396.186170059 I0723 23:55:43.822406 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-1" condition "Ready" to 2026-07-23 23:55:43.822378712 +0000 UTC m=+396.201231319 I0723 23:55:43.845090 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-07-23 23:55:43.845078839 +0000 UTC m=+396.223931446 I0723 23:55:43.859438 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0723 23:55:48.779166 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-07-23 23:55:48.779152499 +0000 UTC m=+401.158005126 I0723 23:56:27.808962 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0723 23:56:27.809007 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-07-23 23:56:27.808996504 +0000 UTC m=+440.187849151 I0723 23:56:27.809339 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-07-23 23:56:27.809333001 +0000 UTC m=+440.188185608 I0723 23:56:27.810977 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0723 23:56:27.811002 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-07-23 23:56:27.810996632 +0000 UTC m=+440.189849259 I0723 23:56:27.811107 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-07-23 23:56:27.811099214 +0000 UTC m=+440.189951821 I0723 23:56:27.811205 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0723 23:56:27.811225 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-07-23 23:56:27.811221557 +0000 UTC m=+440.190074164 I0723 23:56:27.811472 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-07-23 23:56:27.811466082 +0000 UTC m=+440.190318699 I0723 23:56:27.832287 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0723 23:56:27.832460 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-07-23 23:56:27.832451506 +0000 UTC m=+440.211304113 I0723 23:56:27.832897 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0723 23:56:27.833117 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0723 23:56:27.833205 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-07-23 23:56:27.8331997 +0000 UTC m=+440.212052317 I0723 23:56:27.833517 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-07-23 23:56:27.833511806 +0000 UTC m=+440.212364413 I0723 23:56:27.958268 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0723 23:56:27.958827 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0723 23:56:27.984078 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-1" condition "Approved" to 2026-07-23 23:56:27.984064655 +0000 UTC m=+440.362917292 I0723 23:56:27.987131 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-1" condition "Approved" to 2026-07-23 23:56:27.987124864 +0000 UTC m=+440.365977461 I0723 23:56:28.002041 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-1" condition "Ready" to 2026-07-23 23:56:28.002030962 +0000 UTC m=+440.380883579 I0723 23:56:28.002604 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-1" condition "Ready" to 2026-07-23 23:56:28.002598382 +0000 UTC m=+440.381450979 I0723 23:56:28.020546 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-07-23 23:56:28.020535238 +0000 UTC m=+440.399387845 I0723 23:56:28.025511 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-07-23 23:56:28.025501463 +0000 UTC m=+440.404354060 I0723 23:56:28.032623 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0723 23:56:28.033189 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-07-23 23:56:28.033181001 +0000 UTC m=+440.412033608 I0723 23:56:28.037198 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0723 23:56:28.037755 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-07-23 23:56:28.037747449 +0000 UTC m=+440.416600056 I0723 23:56:28.453049 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0723 23:56:28.502534 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0723 23:56:28.551790 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0723 23:56:28.603187 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0723 23:56:28.861178 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-1" condition "Approved" to 2026-07-23 23:56:28.861159925 +0000 UTC m=+441.240012562 I0723 23:56:28.959881 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-1" condition "Ready" to 2026-07-23 23:56:28.959865296 +0000 UTC m=+441.338717933 I0723 23:56:29.410296 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-07-23 23:56:29.410269079 +0000 UTC m=+441.789121706 I0723 23:56:29.504975 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0723 23:56:29.505794 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-07-23 23:56:29.505782069 +0000 UTC m=+441.884634706 I0723 23:56:29.753915 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0723 23:56:29.802544 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0723 23:56:37.214685 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-cfxqr-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0723 23:56:37.214705 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-cfxqr-tls" condition "Ready" to 2026-07-23 23:56:37.214685217 +0000 UTC m=+449.593537864 I0723 23:56:37.214741 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-cfxqr-tls" condition "Issuing" to 2026-07-23 23:56:37.214729218 +0000 UTC m=+449.593581845 I0723 23:56:37.225408 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-cfxqr-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-cfxqr-tls\": the object has been modified; please apply your changes to the latest version and try again" I0723 23:56:37.225522 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-cfxqr-tls" condition "Ready" to 2026-07-23 23:56:37.225512595 +0000 UTC m=+449.604365222 I0723 23:56:37.388408 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-cfxqr-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-cfxqr-tls\": the object has been modified; please apply your changes to the latest version and try again" I0723 23:56:37.434631 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-cfxqr-tls-1" condition "Approved" to 2026-07-23 23:56:37.434603752 +0000 UTC m=+449.813456389 I0723 23:56:37.519609 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-cfxqr-tls-1" condition "Ready" to 2026-07-23 23:56:37.519596068 +0000 UTC m=+449.898448695 I0723 23:56:37.679545 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-cfxqr-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-07-23 23:56:37.679528298 +0000 UTC m=+450.058380925 I0723 23:56:37.695693 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-cfxqr-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-cfxqr-tls\": the object has been modified; please apply your changes to the latest version and try again" I0723 23:56:37.696147 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-cfxqr-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-07-23 23:56:37.696141278 +0000 UTC m=+450.074993875 I0723 23:56:37.736086 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-cfxqr-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-cfxqr-tls\": the object has been modified; please apply your changes to the latest version and try again" I0723 23:56:37.741167 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-cfxqr-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-cfxqr-tls\": the object has been modified; please apply your changes to the latest version and try again" I0723 23:57:08.564416 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-07-23 23:57:08.564397399 +0000 UTC m=+480.943250016 I0723 23:57:08.564459 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0723 23:57:08.564494 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-07-23 23:57:08.564485291 +0000 UTC m=+480.943337898 I0723 23:57:08.576192 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0723 23:57:08.576331 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-07-23 23:57:08.576319249 +0000 UTC m=+480.955171886 I0723 23:57:08.920841 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0723 23:57:08.946085 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-1" condition "Approved" to 2026-07-23 23:57:08.946065519 +0000 UTC m=+481.324918126 I0723 23:57:08.962532 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-1" condition "Ready" to 2026-07-23 23:57:08.962519796 +0000 UTC m=+481.341372403 I0723 23:57:08.983356 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-07-23 23:57:08.983339646 +0000 UTC m=+481.362192263 I0723 23:57:08.999134 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0723 23:57:08.999530 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-07-23 23:57:08.999521178 +0000 UTC m=+481.378373775 I0723 23:57:09.004073 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0723 23:57:09.015002 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:00:40.115297 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-07-24 00:00:40.115267224 +0000 UTC m=+692.494119831 I0724 00:00:40.115329 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0724 00:00:40.115392 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-07-24 00:00:40.115381996 +0000 UTC m=+692.494234633 I0724 00:00:40.126533 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:00:40.126706 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-07-24 00:00:40.126692325 +0000 UTC m=+692.505544962 I0724 00:00:40.287523 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:00:40.329873 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-1" condition "Approved" to 2026-07-24 00:00:40.329859941 +0000 UTC m=+692.708712538 I0724 00:00:40.345689 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-1" condition "Ready" to 2026-07-24 00:00:40.345677816 +0000 UTC m=+692.724530423 I0724 00:00:40.368163 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-07-24 00:00:40.368152629 +0000 UTC m=+692.747005236 I0724 00:00:40.381974 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:00:40.382626 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-07-24 00:00:40.382612868 +0000 UTC m=+692.761465485 I0724 00:00:40.400446 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:03:13.431154 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-07-24 00:03:13.431119935 +0000 UTC m=+845.809972542 I0724 00:03:13.431226 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0724 00:03:13.431290 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-07-24 00:03:13.431279418 +0000 UTC m=+845.810132055 I0724 00:03:13.442515 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:03:13.442619 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-07-24 00:03:13.442609467 +0000 UTC m=+845.821462094 I0724 00:03:13.720733 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:03:13.750876 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-1" condition "Approved" to 2026-07-24 00:03:13.750859938 +0000 UTC m=+846.129712575 I0724 00:03:13.780397 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-1" condition "Ready" to 2026-07-24 00:03:13.780383288 +0000 UTC m=+846.159235925 I0724 00:03:13.807406 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-07-24 00:03:13.807389309 +0000 UTC m=+846.186241926 I0724 00:03:13.821558 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:03:13.822166 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-07-24 00:03:13.822159784 +0000 UTC m=+846.201012381 I0724 00:03:13.836849 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:03:13.842103 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:04:33.691205 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0724 00:04:33.691294 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-07-24 00:04:33.69126485 +0000 UTC m=+926.070117467 I0724 00:04:33.691845 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-07-24 00:04:33.691838402 +0000 UTC m=+926.070691019 I0724 00:04:33.712686 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:04:33.712791 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-07-24 00:04:33.712783906 +0000 UTC m=+926.091636513 I0724 00:04:33.913849 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:04:33.942661 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-1" condition "Approved" to 2026-07-24 00:04:33.942645703 +0000 UTC m=+926.321498310 I0724 00:04:33.974419 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-1" condition "Ready" to 2026-07-24 00:04:33.974401897 +0000 UTC m=+926.353254504 I0724 00:04:34.051891 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-07-24 00:04:34.051868872 +0000 UTC m=+926.430721469 I0724 00:04:34.075883 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:04:34.077121 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-07-24 00:04:34.077089939 +0000 UTC m=+926.455942566 I0724 00:04:34.086976 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:04:34.087816 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-07-24 00:04:34.087805326 +0000 UTC m=+926.466657943 I0724 00:04:34.092076 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:07:47.148932 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-07-24 00:07:47.148890235 +0000 UTC m=+1119.527742862 I0724 00:07:47.149493 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0724 00:07:47.149522 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-07-24 00:07:47.149515138 +0000 UTC m=+1119.528367765 I0724 00:07:47.160431 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:07:47.160506 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0724 00:07:47.160541 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-07-24 00:07:47.16053114 +0000 UTC m=+1119.539383747 I0724 00:07:47.443718 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-1" condition "Approved" to 2026-07-24 00:07:47.44369576 +0000 UTC m=+1119.822548347 I0724 00:07:47.459979 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-1" condition "Ready" to 2026-07-24 00:07:47.459967733 +0000 UTC m=+1119.838820340 I0724 00:07:47.494027 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-07-24 00:07:47.494005941 +0000 UTC m=+1119.872858548 I0724 00:07:47.507062 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:07:47.507604 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-07-24 00:07:47.507594423 +0000 UTC m=+1119.886447030 I0724 00:07:47.526703 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:15:48.632351 1 conditions.go:203] Setting lastTransitionTime for Certificate "cinder-api-certs" condition "Ready" to 2026-07-24 00:15:48.632326158 +0000 UTC m=+1601.011178755 I0724 00:15:48.632421 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/cinder-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0724 00:15:48.632466 1 conditions.go:203] Setting lastTransitionTime for Certificate "cinder-api-certs" condition "Issuing" to 2026-07-24 00:15:48.63245456 +0000 UTC m=+1601.011307197 I0724 00:15:48.643982 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/cinder-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"cinder-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:15:48.644322 1 conditions.go:203] Setting lastTransitionTime for Certificate "cinder-api-certs" condition "Ready" to 2026-07-24 00:15:48.64430444 +0000 UTC m=+1601.023157177 I0724 00:15:48.934502 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/cinder-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"cinder-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:15:48.968505 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "cinder-api-certs-1" condition "Approved" to 2026-07-24 00:15:48.968484208 +0000 UTC m=+1601.347336905 I0724 00:15:48.984675 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "cinder-api-certs-1" condition "Ready" to 2026-07-24 00:15:48.984660121 +0000 UTC m=+1601.363512728 I0724 00:15:49.004041 1 conditions.go:192] Found status change for Certificate "cinder-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-07-24 00:15:49.004021116 +0000 UTC m=+1601.382873783 I0724 00:15:49.018218 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/cinder-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"cinder-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:17:29.600300 1 conditions.go:203] Setting lastTransitionTime for Certificate "placement-api-certs" condition "Ready" to 2026-07-24 00:17:29.600276716 +0000 UTC m=+1701.979129343 I0724 00:17:29.600346 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/placement-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0724 00:17:29.600457 1 conditions.go:203] Setting lastTransitionTime for Certificate "placement-api-certs" condition "Issuing" to 2026-07-24 00:17:29.600445569 +0000 UTC m=+1701.979298206 I0724 00:17:29.611073 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/placement-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"placement-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:17:29.611166 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/placement-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0724 00:17:29.611190 1 conditions.go:203] Setting lastTransitionTime for Certificate "placement-api-certs" condition "Issuing" to 2026-07-24 00:17:29.611182196 +0000 UTC m=+1701.990034803 I0724 00:17:29.983647 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "placement-api-certs-1" condition "Approved" to 2026-07-24 00:17:29.983630099 +0000 UTC m=+1702.362482726 I0724 00:17:30.004750 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "placement-api-certs-1" condition "Ready" to 2026-07-24 00:17:30.004738987 +0000 UTC m=+1702.383591594 I0724 00:17:30.029117 1 conditions.go:192] Found status change for Certificate "placement-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-07-24 00:17:30.029106079 +0000 UTC m=+1702.407958686 I0724 00:17:30.042085 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/placement-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"placement-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:17:30.042760 1 conditions.go:192] Found status change for Certificate "placement-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-07-24 00:17:30.042752252 +0000 UTC m=+1702.421604859 I0724 00:17:30.059221 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/placement-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"placement-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:17:30.061260 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/placement-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"placement-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:18:28.209696 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/libvirt-vnc-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0724 00:18:28.209733 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-vnc-ca" condition "Issuing" to 2026-07-24 00:18:28.209725206 +0000 UTC m=+1760.588577813 I0724 00:18:28.209979 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-vnc-ca" condition "Ready" to 2026-07-24 00:18:28.20997426 +0000 UTC m=+1760.588826867 I0724 00:18:28.219539 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/libvirt-vnc-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-vnc-ca\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:18:28.219672 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-vnc-ca" condition "Ready" to 2026-07-24 00:18:28.219666678 +0000 UTC m=+1760.598519285 I0724 00:18:28.237324 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/libvirt-vnc-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-vnc-ca\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:18:28.257546 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-vnc-ca-1" condition "Approved" to 2026-07-24 00:18:28.25753134 +0000 UTC m=+1760.636383947 I0724 00:18:28.270722 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-vnc-ca-1" condition "Ready" to 2026-07-24 00:18:28.270708505 +0000 UTC m=+1760.649561132 I0724 00:18:28.291245 1 conditions.go:192] Found status change for Certificate "libvirt-vnc-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-07-24 00:18:28.291230391 +0000 UTC m=+1760.670082998 I0724 00:18:28.306019 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/libvirt-vnc-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-vnc-ca\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:18:28.350599 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/libvirt-vnc-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-vnc-ca\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:18:28.832694 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-api-ca" condition "Ready" to 2026-07-24 00:18:28.832671932 +0000 UTC m=+1761.211524569 I0724 00:18:28.832837 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/libvirt-api-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0724 00:18:28.832909 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-api-ca" condition "Issuing" to 2026-07-24 00:18:28.832896226 +0000 UTC m=+1761.211748863 I0724 00:18:28.866998 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/libvirt-api-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-api-ca\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:18:28.867099 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-api-ca" condition "Ready" to 2026-07-24 00:18:28.867087968 +0000 UTC m=+1761.245940595 I0724 00:18:28.882512 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/libvirt-api-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-api-ca\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:18:28.891336 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/libvirt-api-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-api-ca\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:18:28.891644 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-api-ca" condition "Ready" to 2026-07-24 00:18:28.891633412 +0000 UTC m=+1761.270486019 I0724 00:18:28.891687 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-api-ca-1" condition "Approved" to 2026-07-24 00:18:28.891667212 +0000 UTC m=+1761.270519829 I0724 00:18:28.907241 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-api-ca" condition "Ready" to 2026-07-24 00:18:28.907221863 +0000 UTC m=+1761.286074470 I0724 00:18:28.907835 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-api-ca-1" condition "Ready" to 2026-07-24 00:18:28.907819485 +0000 UTC m=+1761.286672092 I0724 00:18:28.911774 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/libvirt-api-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-api-ca\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:18:28.927680 1 conditions.go:192] Found status change for Certificate "libvirt-api-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-07-24 00:18:28.927663819 +0000 UTC m=+1761.306516426 I0724 00:18:28.946568 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/libvirt-api-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-api-ca\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:18:28.999546 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/libvirt-api-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-api-ca\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:18:29.576494 1 conditions.go:96] Setting lastTransitionTime for Issuer "libvirt-vnc" condition "Ready" to 2026-07-24 00:18:29.576479185 +0000 UTC m=+1761.955331822 I0724 00:18:30.244110 1 conditions.go:96] Setting lastTransitionTime for Issuer "libvirt-api" condition "Ready" to 2026-07-24 00:18:30.244094435 +0000 UTC m=+1762.622947062 I0724 00:19:17.205337 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/nova-novncproxy-vencrypt" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0724 00:19:17.205391 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-novncproxy-vencrypt" condition "Issuing" to 2026-07-24 00:19:17.205360761 +0000 UTC m=+1809.584213358 I0724 00:19:17.205427 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-novncproxy-vencrypt" condition "Ready" to 2026-07-24 00:19:17.205421042 +0000 UTC m=+1809.584273639 I0724 00:19:17.242985 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/nova-novncproxy-vencrypt" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-novncproxy-vencrypt\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:19:17.243142 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/nova-novncproxy-vencrypt" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0724 00:19:17.243174 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-novncproxy-vencrypt" condition "Issuing" to 2026-07-24 00:19:17.243165362 +0000 UTC m=+1809.622017979 I0724 00:19:18.981946 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "nova-novncproxy-vencrypt-1" condition "Approved" to 2026-07-24 00:19:18.981931936 +0000 UTC m=+1811.360784543 I0724 00:19:19.003491 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "nova-novncproxy-vencrypt-1" condition "Ready" to 2026-07-24 00:19:19.003472792 +0000 UTC m=+1811.382325409 I0724 00:19:19.030797 1 conditions.go:192] Found status change for Certificate "nova-novncproxy-vencrypt" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-07-24 00:19:19.03078454 +0000 UTC m=+1811.409637137 I0724 00:19:19.043933 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/nova-novncproxy-vencrypt" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-novncproxy-vencrypt\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:19:19.078692 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/nova-novncproxy-vencrypt" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-novncproxy-vencrypt\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:22:01.557474 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-api-certs" condition "Ready" to 2026-07-24 00:22:01.557437188 +0000 UTC m=+1973.936289795 I0724 00:22:01.558017 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/nova-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0724 00:22:01.558054 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-api-certs" condition "Issuing" to 2026-07-24 00:22:01.558050369 +0000 UTC m=+1973.936902976 I0724 00:22:01.567854 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/nova-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:22:01.567955 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/nova-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0724 00:22:01.567985 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-api-certs" condition "Issuing" to 2026-07-24 00:22:01.5679778 +0000 UTC m=+1973.946830437 I0724 00:22:01.834307 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "nova-api-certs-1" condition "Approved" to 2026-07-24 00:22:01.834292498 +0000 UTC m=+1974.213145135 I0724 00:22:01.849591 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "nova-api-certs-1" condition "Ready" to 2026-07-24 00:22:01.849582712 +0000 UTC m=+1974.228435309 I0724 00:22:01.870230 1 conditions.go:192] Found status change for Certificate "nova-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-07-24 00:22:01.870219471 +0000 UTC m=+1974.249072068 I0724 00:22:01.884812 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/nova-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:22:01.885861 1 conditions.go:192] Found status change for Certificate "nova-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-07-24 00:22:01.885848512 +0000 UTC m=+1974.264701149 I0724 00:22:01.930427 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/nova-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:22:01.930833 1 conditions.go:192] Found status change for Certificate "nova-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-07-24 00:22:01.93082705 +0000 UTC m=+1974.309679647 I0724 00:22:03.086018 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-novncproxy-certs" condition "Ready" to 2026-07-24 00:22:03.086007255 +0000 UTC m=+1975.464859852 I0724 00:22:03.086306 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/nova-novncproxy-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0724 00:22:03.086321 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-novncproxy-certs" condition "Issuing" to 2026-07-24 00:22:03.086318121 +0000 UTC m=+1975.465170718 I0724 00:22:03.098890 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/nova-novncproxy-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-novncproxy-certs\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:22:03.098942 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-novncproxy-certs" condition "Ready" to 2026-07-24 00:22:03.098938084 +0000 UTC m=+1975.477790691 I0724 00:22:03.632901 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/nova-novncproxy-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-novncproxy-certs\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:22:03.668150 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "nova-novncproxy-certs-1" condition "Approved" to 2026-07-24 00:22:03.668139224 +0000 UTC m=+1976.046991831 I0724 00:22:03.684750 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "nova-novncproxy-certs-1" condition "Ready" to 2026-07-24 00:22:03.684741014 +0000 UTC m=+1976.063593611 I0724 00:22:03.705727 1 conditions.go:192] Found status change for Certificate "nova-novncproxy-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-07-24 00:22:03.705714339 +0000 UTC m=+1976.084566946 I0724 00:22:03.719010 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/nova-novncproxy-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-novncproxy-certs\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:22:03.729852 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/nova-novncproxy-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-novncproxy-certs\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:25:23.653007 1 conditions.go:203] Setting lastTransitionTime for Certificate "neutron-server-certs" condition "Ready" to 2026-07-24 00:25:23.652990665 +0000 UTC m=+2176.031843302 I0724 00:25:23.653309 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/neutron-server-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0724 00:25:23.653392 1 conditions.go:203] Setting lastTransitionTime for Certificate "neutron-server-certs" condition "Issuing" to 2026-07-24 00:25:23.653384082 +0000 UTC m=+2176.032236679 I0724 00:25:23.664218 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/neutron-server-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"neutron-server-certs\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:25:23.664345 1 conditions.go:203] Setting lastTransitionTime for Certificate "neutron-server-certs" condition "Ready" to 2026-07-24 00:25:23.664333653 +0000 UTC m=+2176.043186260 I0724 00:25:23.759875 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/neutron-server-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"neutron-server-certs\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:25:23.801302 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "neutron-server-certs-1" condition "Approved" to 2026-07-24 00:25:23.80127868 +0000 UTC m=+2176.180131277 I0724 00:25:23.817429 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "neutron-server-certs-1" condition "Ready" to 2026-07-24 00:25:23.81741361 +0000 UTC m=+2176.196266227 I0724 00:25:23.844685 1 conditions.go:192] Found status change for Certificate "neutron-server-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-07-24 00:25:23.844672415 +0000 UTC m=+2176.223525022 I0724 00:25:23.860427 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/neutron-server-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"neutron-server-certs\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:25:23.861183 1 conditions.go:192] Found status change for Certificate "neutron-server-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-07-24 00:25:23.861174213 +0000 UTC m=+2176.240026820 I0724 00:25:23.873674 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/neutron-server-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"neutron-server-certs\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:25:23.880582 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/neutron-server-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"neutron-server-certs\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:30:33.622047 1 conditions.go:203] Setting lastTransitionTime for Certificate "heat-api-certs" condition "Ready" to 2026-07-24 00:30:33.622020835 +0000 UTC m=+2486.000873442 I0724 00:30:33.622251 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/heat-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0724 00:30:33.622365 1 conditions.go:203] Setting lastTransitionTime for Certificate "heat-api-certs" condition "Issuing" to 2026-07-24 00:30:33.622351412 +0000 UTC m=+2486.001204069 I0724 00:30:33.634081 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/heat-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"heat-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:30:33.634305 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/heat-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0724 00:30:33.634348 1 conditions.go:203] Setting lastTransitionTime for Certificate "heat-api-certs" condition "Issuing" to 2026-07-24 00:30:33.634335612 +0000 UTC m=+2486.013188219 I0724 00:30:33.878047 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "heat-api-certs-1" condition "Approved" to 2026-07-24 00:30:33.878028724 +0000 UTC m=+2486.256881331 I0724 00:30:33.893307 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "heat-api-certs-1" condition "Ready" to 2026-07-24 00:30:33.893282568 +0000 UTC m=+2486.272135165 I0724 00:30:33.922332 1 conditions.go:192] Found status change for Certificate "heat-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-07-24 00:30:33.922315257 +0000 UTC m=+2486.301167884 I0724 00:30:33.935856 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/heat-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"heat-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:30:33.936386 1 conditions.go:192] Found status change for Certificate "heat-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-07-24 00:30:33.936377138 +0000 UTC m=+2486.315229745 I0724 00:30:33.949484 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/heat-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"heat-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:30:33.953921 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/heat-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"heat-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:30:35.052451 1 conditions.go:203] Setting lastTransitionTime for Certificate "heat-cfn-certs" condition "Ready" to 2026-07-24 00:30:35.052437335 +0000 UTC m=+2487.431289942 I0724 00:30:35.052525 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/heat-cfn-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0724 00:30:35.052589 1 conditions.go:203] Setting lastTransitionTime for Certificate "heat-cfn-certs" condition "Issuing" to 2026-07-24 00:30:35.052582077 +0000 UTC m=+2487.431434674 I0724 00:30:35.065022 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/heat-cfn-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"heat-cfn-certs\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:30:35.065135 1 conditions.go:203] Setting lastTransitionTime for Certificate "heat-cfn-certs" condition "Ready" to 2026-07-24 00:30:35.065124129 +0000 UTC m=+2487.443976746 I0724 00:30:35.211364 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/heat-cfn-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"heat-cfn-certs\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:30:35.238947 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "heat-cfn-certs-1" condition "Approved" to 2026-07-24 00:30:35.238925405 +0000 UTC m=+2487.617778032 I0724 00:30:35.255478 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "heat-cfn-certs-1" condition "Ready" to 2026-07-24 00:30:35.255466863 +0000 UTC m=+2487.634319470 I0724 00:30:35.281554 1 conditions.go:192] Found status change for Certificate "heat-cfn-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-07-24 00:30:35.281537305 +0000 UTC m=+2487.660389942 I0724 00:30:35.300554 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/heat-cfn-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"heat-cfn-certs\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:30:35.301008 1 conditions.go:192] Found status change for Certificate "heat-cfn-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-07-24 00:30:35.300999599 +0000 UTC m=+2487.679852196 I0724 00:30:35.314451 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/heat-cfn-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"heat-cfn-certs\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:33:06.087719 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-client-ca" condition "Ready" to 2026-07-24 00:33:06.087705333 +0000 UTC m=+2638.466557960 I0724 00:33:06.088385 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/octavia-client-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0724 00:33:06.088489 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-client-ca" condition "Issuing" to 2026-07-24 00:33:06.088478379 +0000 UTC m=+2638.467331006 I0724 00:33:06.101472 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/octavia-client-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-client-ca\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:33:06.101577 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/octavia-client-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0724 00:33:06.101610 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-client-ca" condition "Issuing" to 2026-07-24 00:33:06.101602281 +0000 UTC m=+2638.480454918 E0724 00:33:06.102270 1 setup.go:48] "error getting signing CA TLS certificate" err="secrets \"octavia-client-ca\" not found" logger="cert-manager.controller.setup" resource_name="octavia-client" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0724 00:33:06.102315 1 conditions.go:96] Setting lastTransitionTime for Issuer "octavia-client" condition "Ready" to 2026-07-24 00:33:06.102306834 +0000 UTC m=+2638.481159471 I0724 00:33:06.102364 1 sync.go:62] "Error initializing issuer: secrets \"octavia-client-ca\" not found" logger="cert-manager.controller" resource_name="octavia-client" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0724 00:33:06.113132 1 controller.go:162] "re-queuing item due to error processing" err="secrets \"octavia-client-ca\" not found" logger="cert-manager.controller" key="openstack/octavia-client" E0724 00:33:06.113480 1 setup.go:48] "error getting signing CA TLS certificate" err="secrets \"octavia-client-ca\" not found" logger="cert-manager.controller.setup" resource_name="octavia-client" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0724 00:33:06.113583 1 sync.go:62] "Error initializing issuer: secrets \"octavia-client-ca\" not found" logger="cert-manager.controller" resource_name="octavia-client" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0724 00:33:06.113730 1 controller.go:162] "re-queuing item due to error processing" err="secrets \"octavia-client-ca\" not found" logger="cert-manager.controller" key="openstack/octavia-client" I0724 00:33:06.152627 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-client-ca-1" condition "Approved" to 2026-07-24 00:33:06.152610204 +0000 UTC m=+2638.531462811 I0724 00:33:06.167301 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-client-ca-1" condition "Ready" to 2026-07-24 00:33:06.167285197 +0000 UTC m=+2638.546137794 I0724 00:33:06.201223 1 conditions.go:192] Found status change for Certificate "octavia-client-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-07-24 00:33:06.20120418 +0000 UTC m=+2638.580056787 I0724 00:33:06.214204 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/octavia-client-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-client-ca\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:33:06.253126 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/octavia-client-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-client-ca\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:33:06.740954 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-server-ca" condition "Ready" to 2026-07-24 00:33:06.74093476 +0000 UTC m=+2639.119787387 I0724 00:33:06.740975 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/octavia-server-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0724 00:33:06.741100 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-server-ca" condition "Issuing" to 2026-07-24 00:33:06.741090963 +0000 UTC m=+2639.119943560 E0724 00:33:06.753256 1 setup.go:48] "error getting signing CA TLS certificate" err="secrets \"octavia-server-ca\" not found" logger="cert-manager.controller.setup" resource_name="octavia-server" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0724 00:33:06.753312 1 conditions.go:96] Setting lastTransitionTime for Issuer "octavia-server" condition "Ready" to 2026-07-24 00:33:06.753307598 +0000 UTC m=+2639.132160205 I0724 00:33:06.753329 1 sync.go:62] "Error initializing issuer: secrets \"octavia-server-ca\" not found" logger="cert-manager.controller" resource_name="octavia-server" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0724 00:33:06.755844 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/octavia-server-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-server-ca\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:33:06.756003 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/octavia-server-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0724 00:33:06.756056 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-server-ca" condition "Issuing" to 2026-07-24 00:33:06.75604729 +0000 UTC m=+2639.134899907 E0724 00:33:06.763064 1 controller.go:162] "re-queuing item due to error processing" err="secrets \"octavia-server-ca\" not found" logger="cert-manager.controller" key="openstack/octavia-server" E0724 00:33:06.763273 1 setup.go:48] "error getting signing CA TLS certificate" err="secrets \"octavia-server-ca\" not found" logger="cert-manager.controller.setup" resource_name="octavia-server" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0724 00:33:06.763301 1 sync.go:62] "Error initializing issuer: secrets \"octavia-server-ca\" not found" logger="cert-manager.controller" resource_name="octavia-server" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0724 00:33:06.763345 1 controller.go:162] "re-queuing item due to error processing" err="secrets \"octavia-server-ca\" not found" logger="cert-manager.controller" key="openstack/octavia-server" I0724 00:33:06.801286 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-server-ca-1" condition "Approved" to 2026-07-24 00:33:06.801275293 +0000 UTC m=+2639.180127910 I0724 00:33:06.815249 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-server-ca-1" condition "Ready" to 2026-07-24 00:33:06.815233222 +0000 UTC m=+2639.194085829 I0724 00:33:06.833853 1 conditions.go:192] Found status change for Certificate "octavia-server-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-07-24 00:33:06.8338426 +0000 UTC m=+2639.212695207 I0724 00:33:06.849897 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/octavia-server-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-server-ca\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:33:06.850396 1 conditions.go:192] Found status change for Certificate "octavia-server-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-07-24 00:33:06.850382999 +0000 UTC m=+2639.229235606 I0724 00:33:06.880169 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/octavia-server-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-server-ca\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:33:07.498787 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/octavia-client-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0724 00:33:07.498835 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-client-certs" condition "Issuing" to 2026-07-24 00:33:07.498824192 +0000 UTC m=+2639.877676829 I0724 00:33:07.499102 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-client-certs" condition "Ready" to 2026-07-24 00:33:07.499093377 +0000 UTC m=+2639.877946004 I0724 00:33:07.511046 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/octavia-client-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-client-certs\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:33:07.511162 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/octavia-client-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0724 00:33:07.511193 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-client-certs" condition "Issuing" to 2026-07-24 00:33:07.511184621 +0000 UTC m=+2639.890037228 I0724 00:33:07.551410 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-client-certs-1" condition "Approved" to 2026-07-24 00:33:07.551395185 +0000 UTC m=+2639.930247782 I0724 00:33:07.568845 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-client-certs-1" condition "Ready" to 2026-07-24 00:33:07.568829181 +0000 UTC m=+2639.947681818 I0724 00:33:11.113497 1 conditions.go:85] Found status change for Issuer "octavia-client" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-07-24 00:33:11.113486508 +0000 UTC m=+2643.492339115 I0724 00:33:11.125526 1 conditions.go:252] Found status change for CertificateRequest "octavia-client-certs-1" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-07-24 00:33:11.12550934 +0000 UTC m=+2643.504361977 I0724 00:33:11.151083 1 conditions.go:192] Found status change for Certificate "octavia-client-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-07-24 00:33:11.151069892 +0000 UTC m=+2643.529922499 I0724 00:33:11.165328 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/octavia-client-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-client-certs\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:33:11.165608 1 conditions.go:192] Found status change for Certificate "octavia-client-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-07-24 00:33:11.165599173 +0000 UTC m=+2643.544451780 I0724 00:33:11.179510 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/octavia-client-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-client-certs\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:33:11.763773 1 conditions.go:85] Found status change for Issuer "octavia-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-07-24 00:33:11.763755368 +0000 UTC m=+2644.142607995 I0724 00:35:54.470983 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/octavia-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0724 00:35:54.471051 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-api-certs" condition "Issuing" to 2026-07-24 00:35:54.471021659 +0000 UTC m=+2806.849874266 I0724 00:35:54.471445 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-api-certs" condition "Ready" to 2026-07-24 00:35:54.471433658 +0000 UTC m=+2806.850286275 I0724 00:35:54.481754 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/octavia-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:35:54.481839 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-api-certs" condition "Ready" to 2026-07-24 00:35:54.481833758 +0000 UTC m=+2806.860686365 I0724 00:35:54.744230 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/octavia-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:35:54.775451 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-api-certs-1" condition "Approved" to 2026-07-24 00:35:54.775423885 +0000 UTC m=+2807.154276512 I0724 00:35:54.792972 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-api-certs-1" condition "Ready" to 2026-07-24 00:35:54.792956312 +0000 UTC m=+2807.171808929 I0724 00:35:54.817972 1 conditions.go:192] Found status change for Certificate "octavia-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-07-24 00:35:54.817958314 +0000 UTC m=+2807.196810911 I0724 00:35:54.833450 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/octavia-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:35:54.833936 1 conditions.go:192] Found status change for Certificate "octavia-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-07-24 00:35:54.833928832 +0000 UTC m=+2807.212781429 I0724 00:35:54.858556 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/octavia-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:36:40.959310 1 conditions.go:96] Setting lastTransitionTime for Issuer "test-selfsigned" condition "Ready" to 2026-07-24 00:36:40.959278681 +0000 UTC m=+2853.338131308 I0724 00:36:40.977481 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="cert-manager-test/selfsigned-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0724 00:36:40.977614 1 conditions.go:203] Setting lastTransitionTime for Certificate "selfsigned-cert" condition "Ready" to 2026-07-24 00:36:40.977592283 +0000 UTC m=+2853.356444910 I0724 00:36:40.977560 1 conditions.go:203] Setting lastTransitionTime for Certificate "selfsigned-cert" condition "Issuing" to 2026-07-24 00:36:40.977542553 +0000 UTC m=+2853.356395180 I0724 00:36:40.989731 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="cert-manager-test/selfsigned-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"selfsigned-cert\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:36:40.989827 1 conditions.go:203] Setting lastTransitionTime for Certificate "selfsigned-cert" condition "Ready" to 2026-07-24 00:36:40.989816739 +0000 UTC m=+2853.368669346 E0724 00:36:41.012520 1 controller.go:134] "issuer in work queue no longer exists" err="issuer.cert-manager.io \"test-selfsigned\" not found" logger="cert-manager.controller" I0724 00:36:41.061447 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-selfsigned-issuer" condition "Ready" to 2026-07-24 00:36:41.061423909 +0000 UTC m=+2853.440276536 I0724 00:36:41.085517 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Ready" to 2026-07-24 00:36:41.085495682 +0000 UTC m=+2853.464348309 I0724 00:36:41.085853 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="capi-system/capi-serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0724 00:36:41.085943 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Issuing" to 2026-07-24 00:36:41.08592736 +0000 UTC m=+2853.464779987 I0724 00:36:41.096743 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capi-system/capi-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:36:41.096829 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="capi-system/capi-serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0724 00:36:41.096858 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Issuing" to 2026-07-24 00:36:41.096850991 +0000 UTC m=+2853.475703598 E0724 00:36:41.147811 1 controller.go:162] "re-queuing item due to error processing" err="secrets \"selfsigned-cert-\" is forbidden: unable to create new content in namespace cert-manager-test because it is being terminated" logger="cert-manager.controller" key="cert-manager-test/selfsigned-cert" I0724 00:36:41.375830 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-serving-cert-1" condition "Approved" to 2026-07-24 00:36:41.375819757 +0000 UTC m=+2853.754672354 I0724 00:36:41.399264 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-serving-cert-1" condition "Ready" to 2026-07-24 00:36:41.399248298 +0000 UTC m=+2853.778100895 I0724 00:36:41.439274 1 conditions.go:192] Found status change for Certificate "capi-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-07-24 00:36:41.439263339 +0000 UTC m=+2853.818115936 I0724 00:36:41.453712 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capi-system/capi-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:36:41.455192 1 conditions.go:192] Found status change for Certificate "capi-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-07-24 00:36:41.455183535 +0000 UTC m=+2853.834036132 I0724 00:36:41.477355 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capi-system/capi-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:36:41.949658 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-kubeadm-bootstrap-selfsigned-issuer" condition "Ready" to 2026-07-24 00:36:41.949635192 +0000 UTC m=+2854.328487779 I0724 00:36:41.968733 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0724 00:36:41.968875 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Issuing" to 2026-07-24 00:36:41.968867853 +0000 UTC m=+2854.347720450 I0724 00:36:41.968933 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready" to 2026-07-24 00:36:41.968918424 +0000 UTC m=+2854.347771031 I0724 00:36:41.989531 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:36:41.989617 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready" to 2026-07-24 00:36:41.989609593 +0000 UTC m=+2854.368462190 I0724 00:36:42.113851 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:36:42.163083 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-bootstrap-serving-cert-1" condition "Approved" to 2026-07-24 00:36:42.163070065 +0000 UTC m=+2854.541922662 I0724 00:36:42.184733 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-bootstrap-serving-cert-1" condition "Ready" to 2026-07-24 00:36:42.184722422 +0000 UTC m=+2854.563575019 I0724 00:36:42.228645 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-07-24 00:36:42.228633889 +0000 UTC m=+2854.607486496 I0724 00:36:42.242448 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:36:42.415636 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-kubeadm-control-plane-selfsigned-issuer" condition "Ready" to 2026-07-24 00:36:42.415625371 +0000 UTC m=+2854.794477978 I0724 00:36:42.440850 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0724 00:36:42.440880 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Issuing" to 2026-07-24 00:36:42.440873737 +0000 UTC m=+2854.819726324 I0724 00:36:42.441134 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready" to 2026-07-24 00:36:42.441120892 +0000 UTC m=+2854.819973489 I0724 00:36:42.460755 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:36:42.460821 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0724 00:36:42.460844 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Issuing" to 2026-07-24 00:36:42.460837492 +0000 UTC m=+2854.839690089 I0724 00:36:42.839708 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-control-plane-serving-cert-1" condition "Approved" to 2026-07-24 00:36:42.839696732 +0000 UTC m=+2855.218549329 I0724 00:36:42.857602 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-control-plane-serving-cert-1" condition "Ready" to 2026-07-24 00:36:42.857593677 +0000 UTC m=+2855.236446274 I0724 00:36:42.885404 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-07-24 00:36:42.885384562 +0000 UTC m=+2855.264237179 I0724 00:36:42.904065 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:36:42.969984 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:36:42.973013 1 conditions.go:96] Setting lastTransitionTime for Issuer "capo-selfsigned-issuer" condition "Ready" to 2026-07-24 00:36:42.97299648 +0000 UTC m=+2855.351849107 I0724 00:36:42.985956 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Ready" to 2026-07-24 00:36:42.985948829 +0000 UTC m=+2855.364801436 I0724 00:36:42.986206 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="capo-system/capo-serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0724 00:36:42.986254 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Issuing" to 2026-07-24 00:36:42.986249556 +0000 UTC m=+2855.365102163 I0724 00:36:43.125215 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capo-system/capo-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:36:43.125324 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="capo-system/capo-serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0724 00:36:43.125350 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Issuing" to 2026-07-24 00:36:43.125343296 +0000 UTC m=+2855.504195903 I0724 00:36:43.444682 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capo-serving-cert-1" condition "Approved" to 2026-07-24 00:36:43.444665698 +0000 UTC m=+2855.823518315 I0724 00:36:43.465427 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capo-system/capo-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:36:43.679875 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capo-serving-cert-1" condition "Ready" to 2026-07-24 00:36:43.67985687 +0000 UTC m=+2856.058709497 I0724 00:36:44.021232 1 conditions.go:192] Found status change for Certificate "capo-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-07-24 00:36:44.021097725 +0000 UTC m=+2856.399950332 I0724 00:36:44.186802 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capo-system/capo-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:36:44.187438 1 conditions.go:192] Found status change for Certificate "capo-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-07-24 00:36:44.18742729 +0000 UTC m=+2856.566279877 I0724 00:36:44.369515 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capo-system/capo-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:40:53.332016 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/magnum-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0724 00:40:53.332008 1 conditions.go:203] Setting lastTransitionTime for Certificate "magnum-api-certs" condition "Ready" to 2026-07-24 00:40:53.331988139 +0000 UTC m=+3105.710840766 I0724 00:40:53.332199 1 conditions.go:203] Setting lastTransitionTime for Certificate "magnum-api-certs" condition "Issuing" to 2026-07-24 00:40:53.332144792 +0000 UTC m=+3105.710997459 I0724 00:40:53.545389 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/magnum-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"magnum-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:40:53.545557 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/magnum-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0724 00:40:53.545608 1 conditions.go:203] Setting lastTransitionTime for Certificate "magnum-api-certs" condition "Issuing" to 2026-07-24 00:40:53.545581725 +0000 UTC m=+3105.924434332 I0724 00:40:54.425433 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "magnum-api-certs-1" condition "Approved" to 2026-07-24 00:40:54.425420677 +0000 UTC m=+3106.804273274 I0724 00:40:54.452657 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "magnum-api-certs-1" condition "Ready" to 2026-07-24 00:40:54.452645191 +0000 UTC m=+3106.831497798 I0724 00:40:54.486039 1 conditions.go:192] Found status change for Certificate "magnum-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-07-24 00:40:54.486029574 +0000 UTC m=+3106.864882171 I0724 00:40:54.500161 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/magnum-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"magnum-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:40:54.500838 1 conditions.go:192] Found status change for Certificate "magnum-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-07-24 00:40:54.50082858 +0000 UTC m=+3106.879681197 I0724 00:40:54.523730 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/magnum-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"magnum-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:40:54.524185 1 conditions.go:192] Found status change for Certificate "magnum-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-07-24 00:40:54.524175809 +0000 UTC m=+3106.903028416 I0724 00:40:56.130817 1 conditions.go:203] Setting lastTransitionTime for Certificate "magnum-registry-certs" condition "Ready" to 2026-07-24 00:40:56.130801525 +0000 UTC m=+3108.509654112 I0724 00:40:56.131242 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/magnum-registry-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0724 00:40:56.131254 1 conditions.go:203] Setting lastTransitionTime for Certificate "magnum-registry-certs" condition "Issuing" to 2026-07-24 00:40:56.131251004 +0000 UTC m=+3108.510103601 I0724 00:40:56.160551 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/magnum-registry-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"magnum-registry-certs\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:40:56.162605 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/magnum-registry-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0724 00:40:56.162640 1 conditions.go:203] Setting lastTransitionTime for Certificate "magnum-registry-certs" condition "Issuing" to 2026-07-24 00:40:56.162633149 +0000 UTC m=+3108.541485756 I0724 00:40:56.543027 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/magnum-registry-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"magnum-registry-certs\": the object has been modified; please apply your changes to the latest version and try again" I0724 00:40:56.552502 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "magnum-registry-certs-1" condition "Approved" to 2026-07-24 00:40:56.55248382 +0000 UTC m=+3108.931336427 I0724 00:40:56.575201 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "magnum-registry-certs-1" condition "Ready" to 2026-07-24 00:40:56.575186067 +0000 UTC m=+3108.954038674 I0724 00:40:56.599989 1 conditions.go:192] Found status change for Certificate "magnum-registry-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-07-24 00:40:56.599973155 +0000 UTC m=+3108.978825762 I0724 00:40:56.618604 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/magnum-registry-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"magnum-registry-certs\": the object has been modified; please apply your changes to the latest version and try again" E0724 00:42:14.998383 1 leaderelection.go:340] Failed to update lock optimitically: etcdserver: request timed out, falling back to slow path E0724 00:43:12.189915 1 leaderelection.go:340] Failed to update lock optimitically: Put "https://10.96.0.1:443/apis/coordination.k8s.io/v1/namespaces/cert-manager/leases/cert-manager-controller": dial tcp 10.96.0.1:443: i/o timeout, falling back to slow path W0724 00:43:12.253091 1 reflector.go:470] k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232: watch of *v1.Ingress ended with: an error on the server ("unable to decode an event from the watch stream: http2: client connection lost") has prevented the request from succeeding W0724 00:43:12.253135 1 reflector.go:470] k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232: watch of *v1.ClusterIssuer ended with: an error on the server ("unable to decode an event from the watch stream: http2: client connection lost") has prevented the request from succeeding W0724 00:43:12.253167 1 reflector.go:470] k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232: watch of *v1.Challenge ended with: an error on the server ("unable to decode an event from the watch stream: http2: client connection lost") has prevented the request from succeeding W0724 00:43:12.253213 1 reflector.go:470] k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232: watch of *v1.CertificateRequest ended with: an error on the server ("unable to decode an event from the watch stream: http2: client connection lost") has prevented the request from succeeding W0724 00:43:12.253214 1 reflector.go:470] k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232: watch of *v1.PartialObjectMetadata ended with: an error on the server ("unable to decode an event from the watch stream: http2: client connection lost") has prevented the request from succeeding W0724 00:43:12.253241 1 reflector.go:470] k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232: watch of *v1.PartialObjectMetadata ended with: an error on the server ("unable to decode an event from the watch stream: http2: client connection lost") has prevented the request from succeeding W0724 00:43:12.253259 1 reflector.go:470] k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232: watch of *v1.Issuer ended with: an error on the server ("unable to decode an event from the watch stream: http2: client connection lost") has prevented the request from succeeding W0724 00:43:12.253281 1 reflector.go:470] k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232: watch of *v1.PartialObjectMetadata ended with: an error on the server ("unable to decode an event from the watch stream: http2: client connection lost") has prevented the request from succeeding W0724 00:43:12.253287 1 reflector.go:470] k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232: watch of *v1.Order ended with: an error on the server ("unable to decode an event from the watch stream: http2: client connection lost") has prevented the request from succeeding W0724 00:43:12.253280 1 reflector.go:470] k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232: watch of *v1.Certificate ended with: an error on the server ("unable to decode an event from the watch stream: http2: client connection lost") has prevented the request from succeeding W0724 00:43:12.253292 1 reflector.go:470] k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232: watch of *v1.Secret ended with: an error on the server ("unable to decode an event from the watch stream: http2: client connection lost") has prevented the request from succeeding E0724 00:43:22.190355 1 leaderelection.go:347] error retrieving resource lock cert-manager/cert-manager-controller: Get "https://10.96.0.1:443/apis/coordination.k8s.io/v1/namespaces/cert-manager/leases/cert-manager-controller": context deadline exceeded I0724 00:43:22.190429 1 leaderelection.go:285] failed to renew lease cert-manager/cert-manager-controller: timed out waiting for the condition W0724 00:43:43.086087 1 reflector.go:547] k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232: failed to list *v1.Ingress: Get "https://10.96.0.1:443/apis/networking.k8s.io/v1/ingresses?resourceVersion=26302": dial tcp 10.96.0.1:443: i/o timeout I0724 00:43:43.086196 1 trace.go:236] Trace[1341284602]: "Reflector ListAndWatch" name:k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 (24-Jul-2026 00:43:13.084) (total time: 30001ms): Trace[1341284602]: ---"Objects listed" error:Get "https://10.96.0.1:443/apis/networking.k8s.io/v1/ingresses?resourceVersion=26302": dial tcp 10.96.0.1:443: i/o timeout 30001ms (00:43:43.086) Trace[1341284602]: [30.001574009s] [30.001574009s] END E0724 00:43:43.086221 1 reflector.go:150] k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232: Failed to watch *v1.Ingress: failed to list *v1.Ingress: Get "https://10.96.0.1:443/apis/networking.k8s.io/v1/ingresses?resourceVersion=26302": dial tcp 10.96.0.1:443: i/o timeout W0724 00:43:43.127350 1 reflector.go:547] k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232: failed to list *v1.ClusterIssuer: Get "https://10.96.0.1:443/apis/cert-manager.io/v1/clusterissuers?resourceVersion=26276": dial tcp 10.96.0.1:443: i/o timeout I0724 00:43:43.127530 1 trace.go:236] Trace[859711003]: "Reflector ListAndWatch" name:k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 (24-Jul-2026 00:43:13.126) (total time: 30000ms): Trace[859711003]: ---"Objects listed" error:Get "https://10.96.0.1:443/apis/cert-manager.io/v1/clusterissuers?resourceVersion=26276": dial tcp 10.96.0.1:443: i/o timeout 30000ms (00:43:43.127) Trace[859711003]: [30.000703861s] [30.000703861s] END E0724 00:43:43.127591 1 reflector.go:150] k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232: Failed to watch *v1.ClusterIssuer: failed to list *v1.ClusterIssuer: Get "https://10.96.0.1:443/apis/cert-manager.io/v1/clusterissuers?resourceVersion=26276": dial tcp 10.96.0.1:443: i/o timeout W0724 00:43:43.232648 1 reflector.go:547] k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232: failed to list *v1.Order: Get "https://10.96.0.1:443/apis/acme.cert-manager.io/v1/orders?resourceVersion=26272": dial tcp 10.96.0.1:443: i/o timeout I0724 00:43:43.232744 1 trace.go:236] Trace[101233792]: "Reflector ListAndWatch" name:k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 (24-Jul-2026 00:43:13.231) (total time: 30001ms): Trace[101233792]: ---"Objects listed" error:Get "https://10.96.0.1:443/apis/acme.cert-manager.io/v1/orders?resourceVersion=26272": dial tcp 10.96.0.1:443: i/o timeout 30001ms (00:43:43.232) Trace[101233792]: [30.001286914s] [30.001286914s] END E0724 00:43:43.232767 1 reflector.go:150] k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232: Failed to watch *v1.Order: failed to list *v1.Order: Get "https://10.96.0.1:443/apis/acme.cert-manager.io/v1/orders?resourceVersion=26272": dial tcp 10.96.0.1:443: i/o timeout W0724 00:43:43.298042 1 reflector.go:547] k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232: failed to list *v1.PartialObjectMetadata: Get "https://10.96.0.1:443/api/v1/pods?labelSelector=acme.cert-manager.io%2Fhttp-domain&resourceVersion=26310": dial tcp 10.96.0.1:443: i/o timeout I0724 00:43:43.298226 1 trace.go:236] Trace[1402786698]: "Reflector ListAndWatch" name:k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 (24-Jul-2026 00:43:13.296) (total time: 30001ms): Trace[1402786698]: ---"Objects listed" error:Get "https://10.96.0.1:443/api/v1/pods?labelSelector=acme.cert-manager.io%2Fhttp-domain&resourceVersion=26310": dial tcp 10.96.0.1:443: i/o timeout 30001ms (00:43:43.298) Trace[1402786698]: [30.001487748s] [30.001487748s] END E0724 00:43:43.298297 1 reflector.go:150] k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232: Failed to watch *v1.PartialObjectMetadata: failed to list *v1.PartialObjectMetadata: Get "https://10.96.0.1:443/api/v1/pods?labelSelector=acme.cert-manager.io%2Fhttp-domain&resourceVersion=26310": dial tcp 10.96.0.1:443: i/o timeout W0724 00:43:43.472426 1 reflector.go:547] k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232: failed to list *v1.Challenge: Get "https://10.96.0.1:443/apis/acme.cert-manager.io/v1/challenges?resourceVersion=26286": dial tcp 10.96.0.1:443: i/o timeout I0724 00:43:43.472633 1 trace.go:236] Trace[2130628654]: "Reflector ListAndWatch" name:k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 (24-Jul-2026 00:43:13.471) (total time: 30001ms): Trace[2130628654]: ---"Objects listed" error:Get "https://10.96.0.1:443/apis/acme.cert-manager.io/v1/challenges?resourceVersion=26286": dial tcp 10.96.0.1:443: i/o timeout 30001ms (00:43:43.472) Trace[2130628654]: [30.001527278s] [30.001527278s] END E0724 00:43:43.472649 1 reflector.go:150] k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232: Failed to watch *v1.Challenge: failed to list *v1.Challenge: Get "https://10.96.0.1:443/apis/acme.cert-manager.io/v1/challenges?resourceVersion=26286": dial tcp 10.96.0.1:443: i/o timeout W0724 00:43:43.588768 1 reflector.go:547] k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232: failed to list *v1.PartialObjectMetadata: Get "https://10.96.0.1:443/api/v1/secrets?labelSelector=%21controller.cert-manager.io%2Ffao&resourceVersion=26299": dial tcp 10.96.0.1:443: i/o timeout I0724 00:43:43.588878 1 trace.go:236] Trace[1675503525]: "Reflector ListAndWatch" name:k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 (24-Jul-2026 00:43:13.586) (total time: 30002ms): Trace[1675503525]: ---"Objects listed" error:Get "https://10.96.0.1:443/api/v1/secrets?labelSelector=%21controller.cert-manager.io%2Ffao&resourceVersion=26299": dial tcp 10.96.0.1:443: i/o timeout 30002ms (00:43:43.588) Trace[1675503525]: [30.002344773s] [30.002344773s] END E0724 00:43:43.588902 1 reflector.go:150] k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232: Failed to watch *v1.PartialObjectMetadata: failed to list *v1.PartialObjectMetadata: Get "https://10.96.0.1:443/api/v1/secrets?labelSelector=%21controller.cert-manager.io%2Ffao&resourceVersion=26299": dial tcp 10.96.0.1:443: i/o timeout W0724 00:43:43.609183 1 reflector.go:547] k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232: failed to list *v1.Secret: Get "https://10.96.0.1:443/api/v1/secrets?labelSelector=controller.cert-manager.io%2Ffao%3Dtrue&resourceVersion=26309": dial tcp 10.96.0.1:443: i/o timeout I0724 00:43:43.609281 1 trace.go:236] Trace[624497116]: "Reflector ListAndWatch" name:k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 (24-Jul-2026 00:43:13.608) (total time: 30000ms): Trace[624497116]: ---"Objects listed" error:Get "https://10.96.0.1:443/api/v1/secrets?labelSelector=controller.cert-manager.io%2Ffao%3Dtrue&resourceVersion=26309": dial tcp 10.96.0.1:443: i/o timeout 30000ms (00:43:43.609) Trace[624497116]: [30.000552548s] [30.000552548s] END E0724 00:43:43.609319 1 reflector.go:150] k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232: Failed to watch *v1.Secret: failed to list *v1.Secret: Get "https://10.96.0.1:443/api/v1/secrets?labelSelector=controller.cert-manager.io%2Ffao%3Dtrue&resourceVersion=26309": dial tcp 10.96.0.1:443: i/o timeout W0724 00:43:43.636390 1 reflector.go:547] k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232: failed to list *v1.Issuer: Get "https://10.96.0.1:443/apis/cert-manager.io/v1/issuers?resourceVersion=26286": dial tcp 10.96.0.1:443: i/o timeout I0724 00:43:43.636464 1 trace.go:236] Trace[502581320]: "Reflector ListAndWatch" name:k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 (24-Jul-2026 00:43:13.634) (total time: 30001ms): Trace[502581320]: ---"Objects listed" error:Get "https://10.96.0.1:443/apis/cert-manager.io/v1/issuers?resourceVersion=26286": dial tcp 10.96.0.1:443: i/o timeout 30001ms (00:43:43.636) Trace[502581320]: [30.001503586s] [30.001503586s] END E0724 00:43:43.636482 1 reflector.go:150] k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232: Failed to watch *v1.Issuer: failed to list *v1.Issuer: Get "https://10.96.0.1:443/apis/cert-manager.io/v1/issuers?resourceVersion=26286": dial tcp 10.96.0.1:443: i/o timeout W0724 00:43:43.653777 1 reflector.go:547] k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232: failed to list *v1.CertificateRequest: Get "https://10.96.0.1:443/apis/cert-manager.io/v1/certificaterequests?resourceVersion=26272": dial tcp 10.96.0.1:443: i/o timeout I0724 00:43:43.653881 1 trace.go:236] Trace[236754918]: "Reflector ListAndWatch" name:k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 (24-Jul-2026 00:43:13.652) (total time: 30001ms): Trace[236754918]: ---"Objects listed" error:Get "https://10.96.0.1:443/apis/cert-manager.io/v1/certificaterequests?resourceVersion=26272": dial tcp 10.96.0.1:443: i/o timeout 30001ms (00:43:43.653) Trace[236754918]: [30.00164528s] [30.00164528s] END E0724 00:43:43.653911 1 reflector.go:150] k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232: Failed to watch *v1.CertificateRequest: failed to list *v1.CertificateRequest: Get "https://10.96.0.1:443/apis/cert-manager.io/v1/certificaterequests?resourceVersion=26272": dial tcp 10.96.0.1:443: i/o timeout W0724 00:43:43.698119 1 reflector.go:547] k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232: failed to list *v1.Certificate: Get "https://10.96.0.1:443/apis/cert-manager.io/v1/certificates?resourceVersion=26304": dial tcp 10.96.0.1:443: i/o timeout I0724 00:43:43.698223 1 trace.go:236] Trace[1532184438]: "Reflector ListAndWatch" name:k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 (24-Jul-2026 00:43:13.697) (total time: 30000ms): Trace[1532184438]: ---"Objects listed" error:Get "https://10.96.0.1:443/apis/cert-manager.io/v1/certificates?resourceVersion=26304": dial tcp 10.96.0.1:443: i/o timeout 30000ms (00:43:43.698) Trace[1532184438]: [30.00058681s] [30.00058681s] END E0724 00:43:43.698248 1 reflector.go:150] k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232: Failed to watch *v1.Certificate: failed to list *v1.Certificate: Get "https://10.96.0.1:443/apis/cert-manager.io/v1/certificates?resourceVersion=26304": dial tcp 10.96.0.1:443: i/o timeout W0724 00:43:43.787599 1 reflector.go:547] k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232: failed to list *v1.PartialObjectMetadata: Get "https://10.96.0.1:443/api/v1/services?labelSelector=acme.cert-manager.io%2Fhttp-domain&resourceVersion=26299": dial tcp 10.96.0.1:443: i/o timeout I0724 00:43:43.787700 1 trace.go:236] Trace[1201329405]: "Reflector ListAndWatch" name:k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 (24-Jul-2026 00:43:13.786) (total time: 30000ms): Trace[1201329405]: ---"Objects listed" error:Get "https://10.96.0.1:443/api/v1/services?labelSelector=acme.cert-manager.io%2Fhttp-domain&resourceVersion=26299": dial tcp 10.96.0.1:443: i/o timeout 30000ms (00:43:43.787) Trace[1201329405]: [30.000776953s] [30.000776953s] END E0724 00:43:43.787726 1 reflector.go:150] k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232: Failed to watch *v1.PartialObjectMetadata: failed to list *v1.PartialObjectMetadata: Get "https://10.96.0.1:443/api/v1/services?labelSelector=acme.cert-manager.io%2Fhttp-domain&resourceVersion=26299": dial tcp 10.96.0.1:443: i/o timeout E0724 00:43:52.191947 1 leaderelection.go:308] Failed to release lock: Put "https://10.96.0.1:443/apis/coordination.k8s.io/v1/namespaces/cert-manager/leases/cert-manager-controller": dial tcp 10.96.0.1:443: i/o timeout I0724 00:43:52.192101 1 controller.go:122] "shutting down queue as workqueue signaled shutdown" logger="cert-manager.controller.issuers" I0724 00:43:52.192172 1 reflector.go:359] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0724 00:43:52.192197 1 reflector.go:359] Caches populated for *v1.Ingress from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0724 00:43:52.192367 1 controller.go:122] "shutting down queue as workqueue signaled shutdown" logger="cert-manager.controller.certificates-revision-manager" I0724 00:43:52.192396 1 controller.go:122] "shutting down queue as workqueue signaled shutdown" logger="cert-manager.controller.ingress-shim" I0724 00:43:52.192396 1 controller.go:122] "shutting down queue as workqueue signaled shutdown" logger="cert-manager.controller.challenges" I0724 00:43:52.192416 1 controller.go:122] "shutting down queue as workqueue signaled shutdown" logger="cert-manager.controller.certificaterequests-approver" I0724 00:43:52.192430 1 controller.go:122] "shutting down queue as workqueue signaled shutdown" logger="cert-manager.controller.certificates-metrics" I0724 00:43:52.192439 1 controller.go:122] "shutting down queue as workqueue signaled shutdown" logger="cert-manager.controller.certificaterequests-issuer-acme" I0724 00:43:52.192453 1 controller.go:122] "shutting down queue as workqueue signaled shutdown" logger="cert-manager.controller.certificaterequests-issuer-ca" I0724 00:43:52.192464 1 controller.go:122] "shutting down queue as workqueue signaled shutdown" logger="cert-manager.controller.certificaterequests-issuer-venafi" I0724 00:43:52.192487 1 controller.go:122] "shutting down queue as workqueue signaled shutdown" logger="cert-manager.controller.certificates-trigger" I0724 00:43:52.192523 1 controller.go:122] "shutting down queue as workqueue signaled shutdown" logger="cert-manager.controller.orders" I0724 00:43:52.192517 1 controller.go:122] "shutting down queue as workqueue signaled shutdown" logger="cert-manager.controller.certificates-key-manager" I0724 00:43:52.192576 1 controller.go:122] "shutting down queue as workqueue signaled shutdown" logger="cert-manager.controller.certificaterequests-issuer-vault" I0724 00:43:52.192569 1 controller.go:122] "shutting down queue as workqueue signaled shutdown" logger="cert-manager.controller.clusterissuers" I0724 00:43:52.192474 1 controller.go:122] "shutting down queue as workqueue signaled shutdown" logger="cert-manager.controller.certificaterequests-issuer-selfsigned" I0724 00:43:52.192626 1 controller.go:122] "shutting down queue as workqueue signaled shutdown" logger="cert-manager.controller.certificates-issuing" I0724 00:43:52.192650 1 controller.go:122] "shutting down queue as workqueue signaled shutdown" logger="cert-manager.controller.certificates-readiness" I0724 00:43:52.192515 1 reflector.go:359] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0724 00:43:52.192662 1 reflector.go:359] Caches populated for *v1.Certificate from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0724 00:43:52.192527 1 reflector.go:359] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0724 00:43:52.192536 1 reflector.go:359] Caches populated for *v1.Secret from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0724 00:43:52.192730 1 controller.go:122] "shutting down queue as workqueue signaled shutdown" logger="cert-manager.controller.certificates-request-manager" I0724 00:43:52.192545 1 reflector.go:359] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0724 00:43:52.192552 1 reflector.go:359] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0724 00:43:52.192637 1 reflector.go:359] Caches populated for *v1.Challenge from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0724 00:43:52.192644 1 reflector.go:359] Caches populated for *v1.Issuer from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0724 00:43:52.192651 1 reflector.go:359] Caches populated for *v1.Order from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 E0724 00:43:52.192911 1 main.go:40] "error executing command" err="error starting controller: leader election lost" logger="cert-manager"