I0627 18:56:48.215457 1 controller.go:284] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0627 18:56:48.215668 1 client_config.go:659] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0627 18:56:48.218843 1 controller.go:89] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0627 18:56:48.218865 1 controller.go:435] "serving insecurely as tls certificate data not provided" logger="cert-manager.controller" I0627 18:56:48.218876 1 controller.go:102] "listening for insecure connections" logger="cert-manager.controller" address="0.0.0.0:9402" I0627 18:56:48.219410 1 controller.go:178] "starting leader election" logger="cert-manager.controller" I0627 18:56:48.219486 1 controller.go:171] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0627 18:56:48.219471 1 controller.go:127] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0627 18:56:48.222129 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0627 18:56:48.234773 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0627 18:56:48.239037 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0627 18:56:48.241396 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="challenges" I0627 18:56:48.243730 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0627 18:56:48.245706 1 controller.go:225] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0627 18:56:48.245736 1 controller.go:225] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0627 18:56:48.246197 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="orders" I0627 18:56:48.250552 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0627 18:56:48.253510 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0627 18:56:48.255665 1 controller.go:225] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0627 18:56:48.255688 1 controller.go:225] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0627 18:56:48.255789 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0627 18:56:48.258123 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0627 18:56:48.260256 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0627 18:56:48.262099 1 controller.go:225] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0627 18:56:48.262306 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0627 18:56:48.265122 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0627 18:56:48.267391 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0627 18:56:48.269189 1 controller.go:225] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0627 18:56:48.269341 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0627 18:56:48.270972 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="issuers" I0627 18:56:48.272593 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0627 18:56:48.274384 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0627 18:56:48.276014 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0627 18:56:48.278545 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0627 18:56:48.284426 1 reflector.go:359] Caches populated for *v1.Secret from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0627 18:56:48.284513 1 reflector.go:359] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0627 18:56:48.285057 1 reflector.go:359] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0627 18:56:48.285067 1 reflector.go:359] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0627 18:56:48.285436 1 reflector.go:359] Caches populated for *v1.Certificate from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0627 18:56:48.285738 1 reflector.go:359] Caches populated for *v1.Ingress from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0627 18:56:48.297802 1 reflector.go:359] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0627 18:56:48.319291 1 reflector.go:359] Caches populated for *v1.Issuer from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0627 18:56:48.335712 1 reflector.go:359] Caches populated for *v1.Challenge from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0627 18:56:48.350397 1 reflector.go:359] Caches populated for *v1.Order from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0627 18:56:48.373752 1 reflector.go:359] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0627 18:57:04.455241 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-06-27 18:57:04.455214223 +0000 UTC m=+16.262714191 I0627 18:57:05.233234 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0627 18:57:05.233272 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-06-27 18:57:05.233262241 +0000 UTC m=+17.040762249 I0627 18:57:05.233271 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-06-27 18:57:05.233253721 +0000 UTC m=+17.040753719 E0627 18:57:05.247925 1 setup.go:48] "error getting signing CA TLS certificate" err="secrets \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.controller.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0627 18:57:05.248005 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-06-27 18:57:05.247996799 +0000 UTC m=+17.055496777 E0627 18:57:05.248598 1 sync.go:62] "error setting up issuer" err="secrets \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.controller" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0627 18:57:05.250708 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0627 18:57:05.250828 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0627 18:57:05.250850 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-06-27 18:57:05.2508438 +0000 UTC m=+17.058343778 E0627 18:57:05.259662 1 controller.go:162] "re-queuing item due to error processing" err="secrets \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.controller" key="atmosphere" E0627 18:57:05.259784 1 setup.go:48] "error getting signing CA TLS certificate" err="secrets \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.controller.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0627 18:57:05.259863 1 sync.go:62] "error setting up issuer" err="secrets \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.controller" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0627 18:57:05.259938 1 controller.go:162] "re-queuing item due to error processing" err="secrets \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.controller" key="atmosphere" I0627 18:57:05.283272 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0627 18:57:05.300679 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-1" condition "Approved" to 2026-06-27 18:57:05.300666811 +0000 UTC m=+17.108166819 I0627 18:57:05.325643 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-1" condition "Ready" to 2026-06-27 18:57:05.325630637 +0000 UTC m=+17.133130615 I0627 18:57:05.354592 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-27 18:57:05.35458152 +0000 UTC m=+17.162081498 I0627 18:57:05.371605 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0627 18:57:05.372148 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-27 18:57:05.372136757 +0000 UTC m=+17.179636735 I0627 18:57:05.387403 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0627 18:57:10.261041 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-27 18:57:10.261024296 +0000 UTC m=+22.068524294 I0627 18:57:32.610176 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0627 18:57:32.610240 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-06-27 18:57:32.610232534 +0000 UTC m=+44.417732512 I0627 18:57:32.610602 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-06-27 18:57:32.610596501 +0000 UTC m=+44.418096479 I0627 18:57:32.619579 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-06-27 18:57:32.619568489 +0000 UTC m=+44.427068467 I0627 18:57:32.625972 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0627 18:57:32.626137 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0627 18:57:32.626160 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-06-27 18:57:32.626154754 +0000 UTC m=+44.433654732 I0627 18:57:33.118577 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-1" condition "Approved" to 2026-06-27 18:57:33.118564855 +0000 UTC m=+44.926064863 I0627 18:57:33.143662 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-1" condition "Ready" to 2026-06-27 18:57:33.143651021 +0000 UTC m=+44.951150989 I0627 18:57:33.172116 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-27 18:57:33.172102206 +0000 UTC m=+44.979602214 I0627 18:57:33.185472 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0627 18:57:33.185869 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-27 18:57:33.185864766 +0000 UTC m=+44.993364734 I0627 18:57:33.204238 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0627 18:57:33.207942 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0627 19:02:17.474614 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="auth-system/keycloak.199-204-45-3.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0627 19:02:17.474690 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-3.nip.io-tls" condition "Issuing" to 2026-06-27 19:02:17.474680358 +0000 UTC m=+329.282180366 I0627 19:02:17.475177 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-3.nip.io-tls" condition "Ready" to 2026-06-27 19:02:17.475169476 +0000 UTC m=+329.282669474 I0627 19:02:17.488449 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="auth-system/keycloak.199-204-45-3.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-3.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0627 19:02:17.488550 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-3.nip.io-tls" condition "Ready" to 2026-06-27 19:02:17.488539151 +0000 UTC m=+329.296039149 I0627 19:02:17.827132 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="auth-system/keycloak.199-204-45-3.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-3.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0627 19:02:17.899576 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-3.nip.io-tls-1" condition "Approved" to 2026-06-27 19:02:17.899558646 +0000 UTC m=+329.707058644 I0627 19:02:17.915536 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-3.nip.io-tls-1" condition "Ready" to 2026-06-27 19:02:17.915522286 +0000 UTC m=+329.723022254 I0627 19:02:17.938129 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-3.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-27 19:02:17.938116602 +0000 UTC m=+329.745616580 I0627 19:02:17.953231 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="auth-system/keycloak.199-204-45-3.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-3.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0627 19:02:17.954124 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-3.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-27 19:02:17.954117812 +0000 UTC m=+329.761617790 I0627 19:02:17.967013 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="auth-system/keycloak.199-204-45-3.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-3.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0627 19:03:23.060515 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-06-27 19:03:23.060461748 +0000 UTC m=+394.867961736 I0627 19:03:23.060559 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0627 19:03:23.060850 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-06-27 19:03:23.060835834 +0000 UTC m=+394.868335832 E0627 19:03:23.072239 1 setup.go:48] "error getting signing CA TLS certificate" err="secrets \"kube-prometheus-stack-ca\" not found" logger="cert-manager.controller.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0627 19:03:23.072568 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-06-27 19:03:23.072315399 +0000 UTC m=+394.879815377 E0627 19:03:23.072605 1 sync.go:62] "error setting up issuer" err="secrets \"kube-prometheus-stack-ca\" not found" logger="cert-manager.controller" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0627 19:03:23.072965 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0627 19:03:23.073027 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0627 19:03:23.073048 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-06-27 19:03:23.07304338 +0000 UTC m=+394.880543358 E0627 19:03:23.080799 1 controller.go:162] "re-queuing item due to error processing" err="secrets \"kube-prometheus-stack-ca\" not found" logger="cert-manager.controller" key="kube-prometheus-stack" E0627 19:03:23.094035 1 setup.go:48] "error getting signing CA TLS certificate" err="secrets \"kube-prometheus-stack-ca\" not found" logger="cert-manager.controller.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0627 19:03:23.094083 1 sync.go:62] "error setting up issuer" err="secrets \"kube-prometheus-stack-ca\" not found" logger="cert-manager.controller" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0627 19:03:23.094109 1 controller.go:162] "re-queuing item due to error processing" err="secrets \"kube-prometheus-stack-ca\" not found" logger="cert-manager.controller" key="kube-prometheus-stack" I0627 19:03:23.153113 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0627 19:03:23.168213 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-1" condition "Approved" to 2026-06-27 19:03:23.168200789 +0000 UTC m=+394.975700747 I0627 19:03:23.182459 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-1" condition "Ready" to 2026-06-27 19:03:23.182442545 +0000 UTC m=+394.989942553 I0627 19:03:23.199575 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-27 19:03:23.199561106 +0000 UTC m=+395.007061084 I0627 19:03:23.214099 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0627 19:03:23.214433 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-27 19:03:23.214422362 +0000 UTC m=+395.021922340 I0627 19:03:23.229404 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0627 19:03:28.081588 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-27 19:03:28.081571924 +0000 UTC m=+399.889071932 I0627 19:04:08.605729 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-06-27 19:04:08.605680628 +0000 UTC m=+440.413180596 I0627 19:04:08.606358 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0627 19:04:08.606391 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0627 19:04:08.606417 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0627 19:04:08.606452 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-06-27 19:04:08.606441748 +0000 UTC m=+440.413941716 I0627 19:04:08.606503 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-06-27 19:04:08.606500019 +0000 UTC m=+440.413999997 I0627 19:04:08.624739 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-06-27 19:04:08.624709328 +0000 UTC m=+440.432209296 I0627 19:04:08.626052 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-06-27 19:04:08.626045437 +0000 UTC m=+440.433545395 I0627 19:04:08.626097 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-06-27 19:04:08.626094828 +0000 UTC m=+440.433594796 I0627 19:04:08.644656 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0627 19:04:08.644781 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0627 19:04:08.644840 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-06-27 19:04:08.644819624 +0000 UTC m=+440.452319592 I0627 19:04:08.655752 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0627 19:04:08.655830 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0627 19:04:08.655871 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0627 19:04:08.655899 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-06-27 19:04:08.655891042 +0000 UTC m=+440.463391010 I0627 19:04:08.655923 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-06-27 19:04:08.655905462 +0000 UTC m=+440.463405430 I0627 19:04:09.012291 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0627 19:04:09.039852 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-1" condition "Approved" to 2026-06-27 19:04:09.039840157 +0000 UTC m=+440.847340125 I0627 19:04:09.058719 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-1" condition "Ready" to 2026-06-27 19:04:09.058706846 +0000 UTC m=+440.866206834 I0627 19:04:09.093516 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0627 19:04:09.094512 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-1" condition "Approved" to 2026-06-27 19:04:09.094499603 +0000 UTC m=+440.901999561 I0627 19:04:09.112291 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-1" condition "Approved" to 2026-06-27 19:04:09.112276246 +0000 UTC m=+440.919776204 I0627 19:04:09.114516 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-1" condition "Ready" to 2026-06-27 19:04:09.114499647 +0000 UTC m=+440.921999605 I0627 19:04:09.125059 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-27 19:04:09.125020836 +0000 UTC m=+440.932520804 I0627 19:04:09.143785 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-1" condition "Ready" to 2026-06-27 19:04:09.143773612 +0000 UTC m=+440.951273600 I0627 19:04:09.144413 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0627 19:04:09.145361 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-27 19:04:09.145351564 +0000 UTC m=+440.952851532 I0627 19:04:09.258745 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-27 19:04:09.258729674 +0000 UTC m=+441.066229652 I0627 19:04:09.694891 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0627 19:04:09.695451 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-27 19:04:09.695442683 +0000 UTC m=+441.502942661 I0627 19:04:09.794738 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-27 19:04:09.794717601 +0000 UTC m=+441.602217579 I0627 19:04:09.837492 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0627 19:04:09.844957 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0627 19:04:10.145272 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0627 19:04:10.146764 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-27 19:04:10.146754035 +0000 UTC m=+441.954254013 I0627 19:04:10.243970 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0627 19:04:10.308112 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0627 19:04:10.545295 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0627 19:04:17.490020 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-g79j4-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0627 19:04:17.490058 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-g79j4-tls" condition "Issuing" to 2026-06-27 19:04:17.490049091 +0000 UTC m=+449.297549069 I0627 19:04:17.490159 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-g79j4-tls" condition "Ready" to 2026-06-27 19:04:17.490152992 +0000 UTC m=+449.297652960 I0627 19:04:17.504819 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-g79j4-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-g79j4-tls\": the object has been modified; please apply your changes to the latest version and try again" I0627 19:04:17.505195 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-g79j4-tls" condition "Ready" to 2026-06-27 19:04:17.505184124 +0000 UTC m=+449.312684112 I0627 19:04:17.663877 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-g79j4-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-g79j4-tls\": the object has been modified; please apply your changes to the latest version and try again" I0627 19:04:17.688761 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-g79j4-tls-1" condition "Approved" to 2026-06-27 19:04:17.688748722 +0000 UTC m=+449.496248690 I0627 19:04:17.703628 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-g79j4-tls-1" condition "Ready" to 2026-06-27 19:04:17.703614331 +0000 UTC m=+449.511114299 I0627 19:04:17.727094 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-g79j4-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-27 19:04:17.727078261 +0000 UTC m=+449.534578239 I0627 19:04:17.741184 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-g79j4-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-g79j4-tls\": the object has been modified; please apply your changes to the latest version and try again" I0627 19:04:30.613381 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0627 19:04:30.613394 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-06-27 19:04:30.612309895 +0000 UTC m=+462.419809863 I0627 19:04:30.613415 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-06-27 19:04:30.61340745 +0000 UTC m=+462.420907418 I0627 19:04:30.623876 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0627 19:04:30.623989 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0627 19:04:30.624015 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-06-27 19:04:30.624008096 +0000 UTC m=+462.431508074 I0627 19:04:30.812029 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0627 19:04:30.820830 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-1" condition "Approved" to 2026-06-27 19:04:30.820817578 +0000 UTC m=+462.628317556 I0627 19:04:30.838450 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-1" condition "Ready" to 2026-06-27 19:04:30.838441192 +0000 UTC m=+462.645941150 I0627 19:04:30.870371 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-27 19:04:30.870355544 +0000 UTC m=+462.677855542 I0627 19:04:30.885946 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0627 19:04:30.949613 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0627 19:07:39.230524 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-06-27 19:07:39.230507076 +0000 UTC m=+651.038007054 I0627 19:07:39.230800 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0627 19:07:39.230847 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-06-27 19:07:39.23083801 +0000 UTC m=+651.038337988 I0627 19:07:39.240868 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0627 19:07:39.240935 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0627 19:07:39.240959 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-06-27 19:07:39.240951105 +0000 UTC m=+651.048451093 I0627 19:07:39.395116 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0627 19:07:39.416321 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-1" condition "Approved" to 2026-06-27 19:07:39.416300867 +0000 UTC m=+651.223800845 I0627 19:07:39.435607 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-1" condition "Ready" to 2026-06-27 19:07:39.435588324 +0000 UTC m=+651.243088312 I0627 19:07:39.459278 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-27 19:07:39.459267334 +0000 UTC m=+651.266767302 I0627 19:07:39.473084 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0627 19:07:39.475774 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-27 19:07:39.475767667 +0000 UTC m=+651.283267635 I0627 19:07:39.490224 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0627 19:07:39.493876 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0627 19:08:21.518414 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-06-27 19:08:21.518402625 +0000 UTC m=+693.325902603 I0627 19:08:21.518533 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0627 19:08:21.518558 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-06-27 19:08:21.518553776 +0000 UTC m=+693.326053754 I0627 19:08:21.532270 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0627 19:08:21.532384 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-06-27 19:08:21.532375074 +0000 UTC m=+693.339875082 I0627 19:08:21.622542 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0627 19:08:21.651029 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-1" condition "Approved" to 2026-06-27 19:08:21.651017956 +0000 UTC m=+693.458517934 I0627 19:08:21.678091 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-1" condition "Ready" to 2026-06-27 19:08:21.678082805 +0000 UTC m=+693.485582773 I0627 19:08:21.699234 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-27 19:08:21.699222282 +0000 UTC m=+693.506722270 I0627 19:08:21.717431 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0627 19:08:21.717959 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-27 19:08:21.71795018 +0000 UTC m=+693.525450158 I0627 19:08:21.725155 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0627 19:08:21.733134 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again"