I0626 10:27:51.423196 1 start.go:75] "cert-manager: starting controller" version="v1.12.10" git-commit="4131d77fe377e78a6fa562af6bdbd31532ddb1ad" I0626 10:27:51.423489 1 controller.go:262] "cert-manager/controller/build-context: configured acme dns01 nameservers" nameservers=["10.96.0.10:53"] W0626 10:27:51.423704 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0626 10:27:51.430217 1 controller.go:82] "cert-manager/controller: enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" I0626 10:27:51.430974 1 controller.go:156] "cert-manager/controller: starting leader election" I0626 10:27:51.431046 1 controller.go:149] "cert-manager/controller: starting healthz server" address="[::]:9403" I0626 10:27:51.431168 1 controller.go:103] "cert-manager/controller: starting metrics server" address="[::]:9402" I0626 10:27:51.434032 1 leaderelection.go:245] attempting to acquire leader lease cert-manager/cert-manager-controller... I0626 10:27:51.452375 1 leaderelection.go:255] successfully acquired lease cert-manager/cert-manager-controller I0626 10:27:51.457420 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-metrics" I0626 10:27:51.463856 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-trigger" I0626 10:27:51.466685 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificaterequests-issuer-acme" I0626 10:27:51.469156 1 controller.go:203] "cert-manager/controller: not starting controller as it's disabled" controller="certificatesigningrequests-issuer-acme" I0626 10:27:51.469224 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificaterequests-issuer-ca" I0626 10:27:51.471812 1 controller.go:226] "cert-manager/controller: starting controller" controller="challenges" I0626 10:27:51.473982 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-issuing" I0626 10:27:51.475756 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-key-manager" I0626 10:27:51.478324 1 controller.go:226] "cert-manager/controller: starting controller" controller="orders" I0626 10:27:51.482820 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificaterequests-issuer-selfsigned" I0626 10:27:51.489378 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificaterequests-issuer-venafi" I0626 10:27:51.492772 1 controller.go:226] "cert-manager/controller: starting controller" controller="clusterissuers" I0626 10:27:51.496117 1 controller.go:226] "cert-manager/controller: starting controller" controller="issuers" I0626 10:27:51.498607 1 controller.go:226] "cert-manager/controller: starting controller" controller="ingress-shim" I0626 10:27:51.501359 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificaterequests-approver" I0626 10:27:51.503373 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-readiness" I0626 10:27:51.505272 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-request-manager" I0626 10:27:51.507300 1 controller.go:203] "cert-manager/controller: not starting controller as it's disabled" controller="certificatesigningrequests-issuer-ca" I0626 10:27:51.507344 1 controller.go:203] "cert-manager/controller: not starting controller as it's disabled" controller="certificatesigningrequests-issuer-selfsigned" I0626 10:27:51.507357 1 controller.go:203] "cert-manager/controller: not starting controller as it's disabled" controller="certificatesigningrequests-issuer-vault" I0626 10:27:51.507369 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-revision-manager" I0626 10:27:51.507374 1 controller.go:203] "cert-manager/controller: not starting controller as it's disabled" controller="gateway-shim" I0626 10:27:51.507499 1 controller.go:203] "cert-manager/controller: not starting controller as it's disabled" controller="certificatesigningrequests-issuer-venafi" I0626 10:27:51.516702 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificaterequests-issuer-vault" I0626 10:28:12.752333 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-06-26 10:28:12.752298919 +0000 UTC m=+21.364133316 I0626 10:28:13.584952 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-06-26 10:28:13.584928179 +0000 UTC m=+22.196762566 I0626 10:28:13.585093 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0626 10:28:13.585173 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-06-26 10:28:13.585159735 +0000 UTC m=+22.196994122 E0626 10:28:13.605007 1 setup.go:48] "cert-manager/clusterissuers/setup: error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0626 10:28:13.605073 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-06-26 10:28:13.605062707 +0000 UTC m=+22.216897064 E0626 10:28:13.605291 1 sync.go:62] "cert-manager/clusterissuers: error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0626 10:28:13.607948 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0626 10:28:13.608043 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-06-26 10:28:13.608029618 +0000 UTC m=+22.219863975 E0626 10:28:13.622544 1 controller.go:167] "cert-manager/clusterissuers: re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" key="atmosphere" E0626 10:28:13.622776 1 setup.go:48] "cert-manager/clusterissuers/setup: error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0626 10:28:13.622871 1 sync.go:62] "cert-manager/clusterissuers: error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0626 10:28:13.622945 1 controller.go:167] "cert-manager/clusterissuers: re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" key="atmosphere" I0626 10:28:13.641770 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0626 10:28:13.666560 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-5m4hm" condition "Approved" to 2026-06-26 10:28:13.666539101 +0000 UTC m=+22.278373468 I0626 10:28:13.683495 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-5m4hm" condition "Ready" to 2026-06-26 10:28:13.68346881 +0000 UTC m=+22.295303187 I0626 10:28:13.765630 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-26 10:28:13.765526812 +0000 UTC m=+22.377361199 I0626 10:28:13.786537 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0626 10:28:13.787390 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-26 10:28:13.78737976 +0000 UTC m=+22.399214127 I0626 10:28:13.795161 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0626 10:28:13.810304 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0626 10:28:13.810549 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-26 10:28:13.810539299 +0000 UTC m=+22.422373656 I0626 10:28:18.623819 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-26 10:28:18.623805703 +0000 UTC m=+27.235640060 I0626 10:28:42.220633 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0626 10:28:42.221080 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-06-26 10:28:42.220503314 +0000 UTC m=+50.832337691 I0626 10:28:42.221120 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-06-26 10:28:42.220672908 +0000 UTC m=+50.832507255 I0626 10:28:42.236334 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-06-26 10:28:42.236317196 +0000 UTC m=+50.848151553 I0626 10:28:42.244870 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0626 10:28:42.244988 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0626 10:28:42.245072 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-06-26 10:28:42.245064978 +0000 UTC m=+50.856899335 I0626 10:28:42.568311 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-lns9g" condition "Approved" to 2026-06-26 10:28:42.568293805 +0000 UTC m=+51.180128182 I0626 10:28:42.627166 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-lns9g" condition "Ready" to 2026-06-26 10:28:42.627148827 +0000 UTC m=+51.238983214 I0626 10:28:42.671663 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-26 10:28:42.67163501 +0000 UTC m=+51.283469387 I0626 10:28:42.711074 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0626 10:28:42.711907 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-26 10:28:42.711898593 +0000 UTC m=+51.323732970 I0626 10:28:42.745477 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0626 10:31:45.387452 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="auth-system/keycloak.199-204-45-23.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0626 10:31:45.387514 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-23.nip.io-tls" condition "Issuing" to 2026-06-26 10:31:45.387501623 +0000 UTC m=+233.999336000 I0626 10:31:45.387451 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-23.nip.io-tls" condition "Ready" to 2026-06-26 10:31:45.387279528 +0000 UTC m=+233.999113885 I0626 10:31:45.407960 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="auth-system/keycloak.199-204-45-23.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-23.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0626 10:31:45.408254 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-23.nip.io-tls" condition "Ready" to 2026-06-26 10:31:45.408235014 +0000 UTC m=+234.020069421 I0626 10:31:45.590591 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="auth-system/keycloak.199-204-45-23.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-23.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0626 10:31:45.642329 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-23.nip.io-tls-zlhcs" condition "Approved" to 2026-06-26 10:31:45.642308965 +0000 UTC m=+234.254143342 I0626 10:31:45.682866 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-23.nip.io-tls-zlhcs" condition "Ready" to 2026-06-26 10:31:45.682848375 +0000 UTC m=+234.294682732 I0626 10:31:45.726360 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-23.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-26 10:31:45.726346005 +0000 UTC m=+234.338180362 I0626 10:31:45.762284 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="auth-system/keycloak.199-204-45-23.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-23.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0626 10:31:45.763318 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-23.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-26 10:31:45.763304422 +0000 UTC m=+234.375138799 I0626 10:31:45.785949 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="auth-system/keycloak.199-204-45-23.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-23.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0626 10:32:50.295950 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-06-26 10:32:50.295932314 +0000 UTC m=+298.907766661 I0626 10:32:50.296047 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0626 10:32:50.296151 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-06-26 10:32:50.296138919 +0000 UTC m=+298.907973306 E0626 10:32:50.310070 1 setup.go:48] "cert-manager/clusterissuers/setup: error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0626 10:32:50.310170 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-06-26 10:32:50.310162173 +0000 UTC m=+298.921996530 E0626 10:32:50.310195 1 sync.go:62] "cert-manager/clusterissuers: error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0626 10:32:50.312370 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0626 10:32:50.312636 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0626 10:32:50.312677 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-06-26 10:32:50.312667472 +0000 UTC m=+298.924501859 E0626 10:32:50.327920 1 controller.go:167] "cert-manager/clusterissuers: re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" key="kube-prometheus-stack" E0626 10:32:50.328148 1 setup.go:48] "cert-manager/clusterissuers/setup: error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0626 10:32:50.328241 1 sync.go:62] "cert-manager/clusterissuers: error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0626 10:32:50.328334 1 controller.go:167] "cert-manager/clusterissuers: re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" key="kube-prometheus-stack" I0626 10:32:50.357843 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-4rx6l" condition "Approved" to 2026-06-26 10:32:50.357817496 +0000 UTC m=+298.969651883 I0626 10:32:50.372260 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-4rx6l" condition "Ready" to 2026-06-26 10:32:50.372243659 +0000 UTC m=+298.984078016 I0626 10:32:50.397096 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-26 10:32:50.397074254 +0000 UTC m=+299.008908641 I0626 10:32:50.414563 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0626 10:32:50.414967 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-26 10:32:50.414957368 +0000 UTC m=+299.026791715 I0626 10:32:50.428331 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0626 10:32:50.428781 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-26 10:32:50.428764387 +0000 UTC m=+299.040598764 I0626 10:32:50.436223 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0626 10:32:55.328934 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-26 10:32:55.328916174 +0000 UTC m=+303.940750531 I0626 10:33:35.418405 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0626 10:33:35.418514 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-06-26 10:33:35.418477581 +0000 UTC m=+344.030311938 I0626 10:33:35.418984 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-06-26 10:33:35.418978962 +0000 UTC m=+344.030813319 I0626 10:33:35.419207 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-06-26 10:33:35.419202678 +0000 UTC m=+344.031037035 I0626 10:33:35.419434 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0626 10:33:35.419457 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-06-26 10:33:35.419453213 +0000 UTC m=+344.031287570 I0626 10:33:35.419472 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0626 10:33:35.419485 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-06-26 10:33:35.419482304 +0000 UTC m=+344.031316641 I0626 10:33:35.419638 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-06-26 10:33:35.419635347 +0000 UTC m=+344.031469694 I0626 10:33:35.460527 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0626 10:33:35.460629 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0626 10:33:35.460656 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-06-26 10:33:35.460648747 +0000 UTC m=+344.072483104 I0626 10:33:35.460686 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0626 10:33:35.460805 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-06-26 10:33:35.46079229 +0000 UTC m=+344.072626657 I0626 10:33:35.467076 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0626 10:33:35.467829 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0626 10:33:35.467858 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-06-26 10:33:35.467852213 +0000 UTC m=+344.079686570 I0626 10:33:35.736642 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0626 10:33:35.808246 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-lzm8w" condition "Approved" to 2026-06-26 10:33:35.808158664 +0000 UTC m=+344.419993041 I0626 10:33:35.832191 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-lzm8w" condition "Ready" to 2026-06-26 10:33:35.832177439 +0000 UTC m=+344.444011776 I0626 10:33:35.846720 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0626 10:33:35.860899 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-gsnd6" condition "Approved" to 2026-06-26 10:33:35.860886453 +0000 UTC m=+344.472720800 I0626 10:33:35.877852 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-26 10:33:35.877829345 +0000 UTC m=+344.489663702 I0626 10:33:35.878386 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-gsnd6" condition "Ready" to 2026-06-26 10:33:35.878367438 +0000 UTC m=+344.490201785 I0626 10:33:35.902764 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0626 10:33:35.910841 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-26 10:33:35.910820638 +0000 UTC m=+344.522655025 I0626 10:33:35.943686 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0626 10:33:36.455953 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-prsbw" condition "Approved" to 2026-06-26 10:33:36.455932147 +0000 UTC m=+345.067766524 I0626 10:33:36.720002 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-prsbw" condition "Ready" to 2026-06-26 10:33:36.719973293 +0000 UTC m=+345.331807680 I0626 10:33:37.052250 1 issuing_controller.go:324] "cert-manager/certificates-issuing: next private key does not match CSR public key, waiting for requestmanager controller" key="monitoring/prometheus-tls" resource_name="prometheus-tls" resource_namespace="monitoring" resource_kind="Certificate" resource_version="v1" resource_name="prometheus-tls-prsbw" resource_namespace="monitoring" resource_kind="CertificateRequest" resource_version="v1" resource_name="prometheus-tls-d6629" resource_namespace="monitoring" resource_kind="Secret" resource_version="v1" I0626 10:33:37.209920 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-rg8dx" condition "Approved" to 2026-06-26 10:33:37.209897926 +0000 UTC m=+345.821732303 I0626 10:33:37.519163 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-rg8dx" condition "Ready" to 2026-06-26 10:33:37.519147058 +0000 UTC m=+346.130981415 I0626 10:33:37.756004 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-26 10:33:37.755957882 +0000 UTC m=+346.367792269 I0626 10:33:37.855582 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0626 10:33:37.856633 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-26 10:33:37.85661894 +0000 UTC m=+346.468453327 I0626 10:33:38.107260 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0626 10:33:38.156476 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0626 10:33:45.213752 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-bm9pv-tls" condition "Ready" to 2026-06-26 10:33:45.213731794 +0000 UTC m=+353.825566151 I0626 10:33:45.213872 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-bm9pv-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0626 10:33:45.213921 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-bm9pv-tls" condition "Issuing" to 2026-06-26 10:33:45.213908458 +0000 UTC m=+353.825742815 I0626 10:33:45.233699 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-bm9pv-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-bm9pv-tls\": the object has been modified; please apply your changes to the latest version and try again" I0626 10:33:45.233771 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-bm9pv-tls" condition "Ready" to 2026-06-26 10:33:45.233763875 +0000 UTC m=+353.845598232 I0626 10:33:45.383764 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-bm9pv-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-bm9pv-tls\": the object has been modified; please apply your changes to the latest version and try again" I0626 10:33:45.420435 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-bm9pv-k2tjq" condition "Approved" to 2026-06-26 10:33:45.420416154 +0000 UTC m=+354.032250501 I0626 10:33:45.442572 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-bm9pv-k2tjq" condition "Ready" to 2026-06-26 10:33:45.442558464 +0000 UTC m=+354.054392801 I0626 10:33:45.481933 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-bm9pv-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-26 10:33:45.48191285 +0000 UTC m=+354.093747197 I0626 10:33:45.647993 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-bm9pv-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-bm9pv-tls\": the object has been modified; please apply your changes to the latest version and try again" I0626 10:34:18.524730 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-06-26 10:34:18.524713654 +0000 UTC m=+387.136548021 I0626 10:34:18.524796 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0626 10:34:18.524824 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-06-26 10:34:18.524819266 +0000 UTC m=+387.136653623 I0626 10:34:18.549087 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0626 10:34:18.549189 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-06-26 10:34:18.549179567 +0000 UTC m=+387.161013924 I0626 10:34:18.879902 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0626 10:34:18.917947 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-sws6k" condition "Approved" to 2026-06-26 10:34:18.917904619 +0000 UTC m=+387.529739006 I0626 10:34:18.944249 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-sws6k" condition "Ready" to 2026-06-26 10:34:18.944231776 +0000 UTC m=+387.556066133 I0626 10:34:18.982561 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-26 10:34:18.982542817 +0000 UTC m=+387.594377194 I0626 10:34:19.003581 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0626 10:37:36.904590 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-06-26 10:37:36.90457209 +0000 UTC m=+585.516406437 I0626 10:37:36.904690 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0626 10:37:36.904784 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-06-26 10:37:36.904774995 +0000 UTC m=+585.516609352 I0626 10:37:36.922509 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0626 10:37:36.923305 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-06-26 10:37:36.923291181 +0000 UTC m=+585.535125558 I0626 10:37:37.199125 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0626 10:37:37.238229 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-h2dbt" condition "Approved" to 2026-06-26 10:37:37.238208417 +0000 UTC m=+585.850042784 I0626 10:37:37.263433 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-h2dbt" condition "Ready" to 2026-06-26 10:37:37.263413697 +0000 UTC m=+585.875248054 I0626 10:37:37.300306 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-26 10:37:37.300284056 +0000 UTC m=+585.912118413 I0626 10:37:37.333620 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0626 10:37:37.334238 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-26 10:37:37.334229207 +0000 UTC m=+585.946063564 I0626 10:37:37.355799 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0626 10:37:37.356477 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-26 10:37:37.356469749 +0000 UTC m=+585.968304096 I0626 10:40:12.567638 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-06-26 10:40:12.56749677 +0000 UTC m=+741.179331147 I0626 10:40:12.568176 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0626 10:40:12.568274 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-06-26 10:40:12.568262367 +0000 UTC m=+741.180096744 I0626 10:40:12.670398 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0626 10:40:12.670499 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0626 10:40:12.670531 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-06-26 10:40:12.670522468 +0000 UTC m=+741.282356815 I0626 10:40:13.012195 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0626 10:40:13.089391 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-gwprr" condition "Approved" to 2026-06-26 10:40:13.089363484 +0000 UTC m=+741.701197861 I0626 10:40:13.231684 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-gwprr" condition "Ready" to 2026-06-26 10:40:13.231664104 +0000 UTC m=+741.843498481 I0626 10:40:13.464721 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-26 10:40:13.46469402 +0000 UTC m=+742.076528417 I0626 10:40:13.515826 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0626 10:40:13.516506 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-26 10:40:13.516497931 +0000 UTC m=+742.128332278 I0626 10:40:13.524607 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0626 10:40:13.544806 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0626 10:41:26.343345 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0626 10:41:26.343448 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-06-26 10:41:26.343403559 +0000 UTC m=+814.955237936 I0626 10:41:26.343759 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-06-26 10:41:26.343269785 +0000 UTC m=+814.955104142 I0626 10:41:26.378538 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0626 10:41:26.378672 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-06-26 10:41:26.378661549 +0000 UTC m=+814.990495896 I0626 10:41:26.580515 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0626 10:41:26.612856 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-nwx2w" condition "Approved" to 2026-06-26 10:41:26.612830151 +0000 UTC m=+815.224664508 I0626 10:41:26.632582 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-nwx2w" condition "Ready" to 2026-06-26 10:41:26.632560275 +0000 UTC m=+815.244394662 I0626 10:41:26.665188 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-26 10:41:26.665163153 +0000 UTC m=+815.276997540 I0626 10:41:26.686040 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0626 10:41:26.686622 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-26 10:41:26.686614887 +0000 UTC m=+815.298449234 I0626 10:41:26.690182 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0626 10:41:26.706618 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0626 10:44:45.140972 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-06-26 10:44:45.140925494 +0000 UTC m=+1013.752759881 I0626 10:44:45.141515 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0626 10:44:45.141543 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-06-26 10:44:45.141538858 +0000 UTC m=+1013.753373215 I0626 10:44:45.160837 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0626 10:44:45.160913 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0626 10:44:45.160934 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-06-26 10:44:45.160927784 +0000 UTC m=+1013.772762121 I0626 10:44:45.587179 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0626 10:44:45.601305 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-mxhp7" condition "Approved" to 2026-06-26 10:44:45.601279748 +0000 UTC m=+1014.213114105 I0626 10:44:45.622496 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-mxhp7" condition "Ready" to 2026-06-26 10:44:45.622480606 +0000 UTC m=+1014.234314963 I0626 10:44:45.661563 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-26 10:44:45.661546814 +0000 UTC m=+1014.273381161 I0626 10:44:45.687689 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0626 10:44:45.740225 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0626 10:52:54.694303 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/cinder-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0626 10:52:54.694394 1 conditions.go:203] Setting lastTransitionTime for Certificate "cinder-api-certs" condition "Issuing" to 2026-06-26 10:52:54.694381477 +0000 UTC m=+1503.306215854 I0626 10:52:54.694855 1 conditions.go:203] Setting lastTransitionTime for Certificate "cinder-api-certs" condition "Ready" to 2026-06-26 10:52:54.694823387 +0000 UTC m=+1503.306657774 I0626 10:52:54.715265 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/cinder-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"cinder-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0626 10:52:54.715424 1 conditions.go:203] Setting lastTransitionTime for Certificate "cinder-api-certs" condition "Ready" to 2026-06-26 10:52:54.715410198 +0000 UTC m=+1503.327244585 I0626 10:52:54.923863 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/cinder-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"cinder-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0626 10:52:54.961794 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "cinder-api-certs-48fmn" condition "Approved" to 2026-06-26 10:52:54.961767346 +0000 UTC m=+1503.573601723 I0626 10:52:54.985808 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "cinder-api-certs-48fmn" condition "Ready" to 2026-06-26 10:52:54.985785777 +0000 UTC m=+1503.597620144 I0626 10:52:55.023008 1 conditions.go:192] Found status change for Certificate "cinder-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-26 10:52:55.02298775 +0000 UTC m=+1503.634822107 I0626 10:52:55.054625 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/cinder-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"cinder-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0626 10:52:55.059205 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="openstack/cinder-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"cinder-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0626 10:52:55.062229 1 conditions.go:192] Found status change for Certificate "cinder-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-26 10:52:55.062201329 +0000 UTC m=+1503.674035716 I0626 10:52:55.076539 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/cinder-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"cinder-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0626 10:52:55.078858 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/cinder-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"cinder-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0626 10:52:55.079428 1 conditions.go:192] Found status change for Certificate "cinder-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-26 10:52:55.079418233 +0000 UTC m=+1503.691252590 I0626 10:54:29.382746 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/placement-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0626 10:54:29.382794 1 conditions.go:203] Setting lastTransitionTime for Certificate "placement-api-certs" condition "Issuing" to 2026-06-26 10:54:29.382780489 +0000 UTC m=+1597.994614876 I0626 10:54:29.383173 1 conditions.go:203] Setting lastTransitionTime for Certificate "placement-api-certs" condition "Ready" to 2026-06-26 10:54:29.383151517 +0000 UTC m=+1597.994985874 I0626 10:54:29.403825 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/placement-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"placement-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0626 10:54:29.403921 1 conditions.go:203] Setting lastTransitionTime for Certificate "placement-api-certs" condition "Ready" to 2026-06-26 10:54:29.403911852 +0000 UTC m=+1598.015746209 I0626 10:54:29.645756 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/placement-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"placement-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0626 10:54:29.689613 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "placement-api-certs-md8hd" condition "Approved" to 2026-06-26 10:54:29.689588685 +0000 UTC m=+1598.301423072 I0626 10:54:29.717768 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "placement-api-certs-md8hd" condition "Ready" to 2026-06-26 10:54:29.717745027 +0000 UTC m=+1598.329579414 I0626 10:54:29.785265 1 conditions.go:192] Found status change for Certificate "placement-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-26 10:54:29.785241039 +0000 UTC m=+1598.397075396 I0626 10:54:29.812359 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/placement-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"placement-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0626 10:54:29.812929 1 conditions.go:192] Found status change for Certificate "placement-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-26 10:54:29.81291998 +0000 UTC m=+1598.424754337 I0626 10:54:29.836507 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/placement-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"placement-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0626 10:54:29.837010 1 conditions.go:192] Found status change for Certificate "placement-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-26 10:54:29.8369989 +0000 UTC m=+1598.448833257 I0626 10:55:37.083264 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-vnc-ca" condition "Ready" to 2026-06-26 10:55:37.083201775 +0000 UTC m=+1665.695036162 I0626 10:55:37.083367 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/libvirt-vnc-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0626 10:55:37.083415 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-vnc-ca" condition "Issuing" to 2026-06-26 10:55:37.08340143 +0000 UTC m=+1665.695235817 I0626 10:55:37.108688 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/libvirt-vnc-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-vnc-ca\": the object has been modified; please apply your changes to the latest version and try again" I0626 10:55:37.108801 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/libvirt-vnc-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0626 10:55:37.108831 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-vnc-ca" condition "Issuing" to 2026-06-26 10:55:37.10882312 +0000 UTC m=+1665.720657507 I0626 10:55:37.160034 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/libvirt-vnc-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-vnc-ca\": the object has been modified; please apply your changes to the latest version and try again" I0626 10:55:37.171255 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-vnc-ca-g79mm" condition "Approved" to 2026-06-26 10:55:37.171238316 +0000 UTC m=+1665.783072673 I0626 10:55:37.197776 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-vnc-ca-g79mm" condition "Ready" to 2026-06-26 10:55:37.19773231 +0000 UTC m=+1665.809566657 I0626 10:55:37.227755 1 conditions.go:192] Found status change for Certificate "libvirt-vnc-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-26 10:55:37.227738266 +0000 UTC m=+1665.839572623 I0626 10:55:37.261466 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="openstack/libvirt-vnc-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-vnc-ca\": the object has been modified; please apply your changes to the latest version and try again" I0626 10:55:37.333686 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/libvirt-vnc-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-vnc-ca\": the object has been modified; please apply your changes to the latest version and try again" I0626 10:55:37.816026 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/libvirt-api-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0626 10:55:37.816048 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-api-ca" condition "Ready" to 2026-06-26 10:55:37.816021638 +0000 UTC m=+1666.427855995 I0626 10:55:37.816075 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-api-ca" condition "Issuing" to 2026-06-26 10:55:37.816063819 +0000 UTC m=+1666.427898166 I0626 10:55:37.838778 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/libvirt-api-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-api-ca\": the object has been modified; please apply your changes to the latest version and try again" I0626 10:55:37.838890 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-api-ca" condition "Ready" to 2026-06-26 10:55:37.838879319 +0000 UTC m=+1666.450713666 I0626 10:55:37.864227 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/libvirt-api-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-api-ca\": the object has been modified; please apply your changes to the latest version and try again" I0626 10:55:37.900356 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-api-ca-vl4qc" condition "Approved" to 2026-06-26 10:55:37.900338223 +0000 UTC m=+1666.512172580 I0626 10:55:37.918233 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-api-ca-vl4qc" condition "Ready" to 2026-06-26 10:55:37.91820781 +0000 UTC m=+1666.530042157 I0626 10:55:37.957833 1 conditions.go:192] Found status change for Certificate "libvirt-api-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-26 10:55:37.957819285 +0000 UTC m=+1666.569653632 I0626 10:55:37.982759 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/libvirt-api-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-api-ca\": the object has been modified; please apply your changes to the latest version and try again" I0626 10:55:37.983204 1 conditions.go:192] Found status change for Certificate "libvirt-api-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-26 10:55:37.983197974 +0000 UTC m=+1666.595032321 I0626 10:55:38.006692 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/libvirt-api-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-api-ca\": the object has been modified; please apply your changes to the latest version and try again" I0626 10:55:38.692123 1 conditions.go:96] Setting lastTransitionTime for Issuer "libvirt-vnc" condition "Ready" to 2026-06-26 10:55:38.692102101 +0000 UTC m=+1667.303936478 I0626 10:55:39.352454 1 conditions.go:96] Setting lastTransitionTime for Issuer "libvirt-api" condition "Ready" to 2026-06-26 10:55:39.352439497 +0000 UTC m=+1667.964273854 I0626 10:56:27.165887 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/nova-novncproxy-vencrypt" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0626 10:56:27.165934 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-novncproxy-vencrypt" condition "Issuing" to 2026-06-26 10:56:27.165925029 +0000 UTC m=+1715.777759376 I0626 10:56:27.166549 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-novncproxy-vencrypt" condition "Ready" to 2026-06-26 10:56:27.166544393 +0000 UTC m=+1715.778378740 I0626 10:56:27.209810 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/nova-novncproxy-vencrypt" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-novncproxy-vencrypt\": the object has been modified; please apply your changes to the latest version and try again" I0626 10:56:27.209953 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-novncproxy-vencrypt" condition "Ready" to 2026-06-26 10:56:27.209946934 +0000 UTC m=+1715.821781281 I0626 10:56:28.927970 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/nova-novncproxy-vencrypt" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-novncproxy-vencrypt\": the object has been modified; please apply your changes to the latest version and try again" I0626 10:56:28.967101 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "nova-novncproxy-vencrypt-pd7zv" condition "Approved" to 2026-06-26 10:56:28.967075694 +0000 UTC m=+1717.578910081 I0626 10:56:28.992765 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "nova-novncproxy-vencrypt-pd7zv" condition "Ready" to 2026-06-26 10:56:28.992749069 +0000 UTC m=+1717.604583426 I0626 10:56:29.027144 1 conditions.go:192] Found status change for Certificate "nova-novncproxy-vencrypt" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-26 10:56:29.027121335 +0000 UTC m=+1717.638955692 I0626 10:56:29.045283 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/nova-novncproxy-vencrypt" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-novncproxy-vencrypt\": the object has been modified; please apply your changes to the latest version and try again" I0626 10:56:29.047591 1 conditions.go:192] Found status change for Certificate "nova-novncproxy-vencrypt" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-26 10:56:29.047578772 +0000 UTC m=+1717.659413159 I0626 10:56:29.072249 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/nova-novncproxy-vencrypt" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-novncproxy-vencrypt\": the object has been modified; please apply your changes to the latest version and try again" I0626 10:59:15.563213 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-api-certs" condition "Ready" to 2026-06-26 10:59:15.563168205 +0000 UTC m=+1884.175002562 I0626 10:59:15.563871 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/nova-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0626 10:59:15.568165 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-api-certs" condition "Issuing" to 2026-06-26 10:59:15.568140817 +0000 UTC m=+1884.179975414 I0626 10:59:15.603041 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/nova-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0626 10:59:15.603229 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/nova-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0626 10:59:15.603276 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-api-certs" condition "Issuing" to 2026-06-26 10:59:15.603265038 +0000 UTC m=+1884.215099415 I0626 10:59:15.895629 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/nova-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0626 10:59:15.903955 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "nova-api-certs-49zr4" condition "Approved" to 2026-06-26 10:59:15.903943783 +0000 UTC m=+1884.515778130 I0626 10:59:15.920398 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "nova-api-certs-49zr4" condition "Ready" to 2026-06-26 10:59:15.920382577 +0000 UTC m=+1884.532216964 I0626 10:59:15.953420 1 conditions.go:192] Found status change for Certificate "nova-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-26 10:59:15.953391499 +0000 UTC m=+1884.565225886 I0626 10:59:16.011548 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/nova-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0626 10:59:16.012173 1 conditions.go:192] Found status change for Certificate "nova-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-26 10:59:16.012161297 +0000 UTC m=+1884.623995654 I0626 10:59:16.042943 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/nova-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0626 10:59:16.043491 1 conditions.go:192] Found status change for Certificate "nova-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-26 10:59:16.04348074 +0000 UTC m=+1884.655315097 I0626 10:59:17.195064 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-novncproxy-certs" condition "Ready" to 2026-06-26 10:59:17.195042659 +0000 UTC m=+1885.806877046 I0626 10:59:17.195697 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/nova-novncproxy-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0626 10:59:17.195729 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-novncproxy-certs" condition "Issuing" to 2026-06-26 10:59:17.195721934 +0000 UTC m=+1885.807556341 I0626 10:59:17.209682 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/nova-novncproxy-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-novncproxy-certs\": the object has been modified; please apply your changes to the latest version and try again" I0626 10:59:17.209757 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/nova-novncproxy-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0626 10:59:17.209778 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-novncproxy-certs" condition "Issuing" to 2026-06-26 10:59:17.209771694 +0000 UTC m=+1885.821606071 I0626 10:59:17.578012 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "nova-novncproxy-certs-rqt9q" condition "Approved" to 2026-06-26 10:59:17.577994188 +0000 UTC m=+1886.189828545 I0626 10:59:17.607260 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "nova-novncproxy-certs-rqt9q" condition "Ready" to 2026-06-26 10:59:17.607248174 +0000 UTC m=+1886.219082521 I0626 10:59:17.644424 1 conditions.go:192] Found status change for Certificate "nova-novncproxy-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-26 10:59:17.64441042 +0000 UTC m=+1886.256244767 I0626 10:59:17.662663 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/nova-novncproxy-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-novncproxy-certs\": the object has been modified; please apply your changes to the latest version and try again" I0626 10:59:17.663130 1 conditions.go:192] Found status change for Certificate "nova-novncproxy-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-26 10:59:17.663122127 +0000 UTC m=+1886.274956474 I0626 10:59:17.677046 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="openstack/nova-novncproxy-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-novncproxy-certs\": the object has been modified; please apply your changes to the latest version and try again" I0626 10:59:17.689507 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/nova-novncproxy-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-novncproxy-certs\": the object has been modified; please apply your changes to the latest version and try again" I0626 10:59:17.689926 1 conditions.go:192] Found status change for Certificate "nova-novncproxy-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-26 10:59:17.689916437 +0000 UTC m=+1886.301750774 I0626 10:59:17.693861 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/nova-novncproxy-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-novncproxy-certs\": the object has been modified; please apply your changes to the latest version and try again" I0626 11:02:26.729071 1 conditions.go:203] Setting lastTransitionTime for Certificate "neutron-server-certs" condition "Ready" to 2026-06-26 11:02:26.729040322 +0000 UTC m=+2075.340874779 I0626 11:02:26.729237 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/neutron-server-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0626 11:02:26.729302 1 conditions.go:203] Setting lastTransitionTime for Certificate "neutron-server-certs" condition "Issuing" to 2026-06-26 11:02:26.729291358 +0000 UTC m=+2075.341125735 I0626 11:02:26.789103 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/neutron-server-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"neutron-server-certs\": the object has been modified; please apply your changes to the latest version and try again" I0626 11:02:26.789218 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/neutron-server-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0626 11:02:26.789250 1 conditions.go:203] Setting lastTransitionTime for Certificate "neutron-server-certs" condition "Issuing" to 2026-06-26 11:02:26.789242637 +0000 UTC m=+2075.401076984 I0626 11:02:26.997551 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/neutron-server-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"neutron-server-certs\": the object has been modified; please apply your changes to the latest version and try again" I0626 11:02:27.014152 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "neutron-server-certs-5cv62" condition "Approved" to 2026-06-26 11:02:27.014136302 +0000 UTC m=+2075.625970659 I0626 11:02:27.068021 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "neutron-server-certs-5cv62" condition "Ready" to 2026-06-26 11:02:27.068008073 +0000 UTC m=+2075.679842440 I0626 11:02:27.179670 1 conditions.go:192] Found status change for Certificate "neutron-server-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-26 11:02:27.179654232 +0000 UTC m=+2075.791488589 I0626 11:02:27.285498 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/neutron-server-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"neutron-server-certs\": the object has been modified; please apply your changes to the latest version and try again" I0626 11:02:27.286335 1 conditions.go:192] Found status change for Certificate "neutron-server-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-26 11:02:27.286325258 +0000 UTC m=+2075.898159635 I0626 11:02:27.544653 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/neutron-server-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"neutron-server-certs\": the object has been modified; please apply your changes to the latest version and try again" I0626 11:03:08.647305 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-libvirt-default-78mzn-vnc" condition "Ready" to 2026-06-26 11:03:08.64644974 +0000 UTC m=+2117.258284097 I0626 11:03:08.647316 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/libvirt-libvirt-default-78mzn-vnc" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0626 11:03:08.647824 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-libvirt-default-78mzn-vnc" condition "Issuing" to 2026-06-26 11:03:08.647818421 +0000 UTC m=+2117.259652778 I0626 11:03:08.656888 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/libvirt-libvirt-default-78mzn-api" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0626 11:03:08.656917 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-libvirt-default-78mzn-api" condition "Ready" to 2026-06-26 11:03:08.656904459 +0000 UTC m=+2117.268738846 I0626 11:03:08.656926 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-libvirt-default-78mzn-api" condition "Issuing" to 2026-06-26 11:03:08.656916809 +0000 UTC m=+2117.268751156 I0626 11:03:08.678312 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/libvirt-libvirt-default-78mzn-vnc" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-libvirt-default-78mzn-vnc\": the object has been modified; please apply your changes to the latest version and try again" I0626 11:03:08.678597 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-libvirt-default-78mzn-vnc" condition "Ready" to 2026-06-26 11:03:08.678581654 +0000 UTC m=+2117.290416041 I0626 11:03:08.693685 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/libvirt-libvirt-default-78mzn-api" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-libvirt-default-78mzn-api\": the object has been modified; please apply your changes to the latest version and try again" I0626 11:03:08.693897 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/libvirt-libvirt-default-78mzn-api" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0626 11:03:08.693932 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-libvirt-default-78mzn-api" condition "Issuing" to 2026-06-26 11:03:08.693922395 +0000 UTC m=+2117.305756772 I0626 11:03:08.816842 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/libvirt-libvirt-default-78mzn-vnc" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-libvirt-default-78mzn-vnc\": the object has been modified; please apply your changes to the latest version and try again" I0626 11:03:08.881233 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/libvirt-libvirt-default-78mzn-api" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-libvirt-default-78mzn-api\": the object has been modified; please apply your changes to the latest version and try again" I0626 11:03:08.882208 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-libvirt-default-78mzn-vnc-lgq2h" condition "Approved" to 2026-06-26 11:03:08.882191744 +0000 UTC m=+2117.494026121 I0626 11:03:08.887816 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-libvirt-default-78mzn-api-9k9f9" condition "Approved" to 2026-06-26 11:03:08.887799372 +0000 UTC m=+2117.499633729 I0626 11:03:08.905102 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-libvirt-default-78mzn-vnc-lgq2h" condition "Ready" to 2026-06-26 11:03:08.905091236 +0000 UTC m=+2117.516925593 I0626 11:03:08.922435 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-libvirt-default-78mzn-api-9k9f9" condition "Ready" to 2026-06-26 11:03:08.922420132 +0000 UTC m=+2117.534254489 I0626 11:03:08.986091 1 conditions.go:192] Found status change for Certificate "libvirt-libvirt-default-78mzn-vnc" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-26 11:03:08.986072366 +0000 UTC m=+2117.597906743 I0626 11:03:09.014506 1 conditions.go:192] Found status change for Certificate "libvirt-libvirt-default-78mzn-api" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-26 11:03:09.014487345 +0000 UTC m=+2117.626321732 I0626 11:03:09.026641 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="openstack/libvirt-libvirt-default-78mzn-vnc" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-libvirt-default-78mzn-vnc\": the object has been modified; please apply your changes to the latest version and try again" I0626 11:03:09.056449 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/libvirt-libvirt-default-78mzn-api" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-libvirt-default-78mzn-api\": the object has been modified; please apply your changes to the latest version and try again" I0626 11:03:09.057704 1 conditions.go:192] Found status change for Certificate "libvirt-libvirt-default-78mzn-api" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-26 11:03:09.057695152 +0000 UTC m=+2117.669529499 I0626 11:03:09.098054 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/libvirt-libvirt-default-78mzn-api" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-libvirt-default-78mzn-api\": the object has been modified; please apply your changes to the latest version and try again" E0626 11:04:23.796348 1 leaderelection.go:364] Failed to update lock: etcdserver: request timed out I0626 11:08:13.711891 1 conditions.go:203] Setting lastTransitionTime for Certificate "senlin-api-certs" condition "Ready" to 2026-06-26 11:08:13.711838319 +0000 UTC m=+2422.323672696 I0626 11:08:13.712395 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/senlin-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0626 11:08:13.712464 1 conditions.go:203] Setting lastTransitionTime for Certificate "senlin-api-certs" condition "Issuing" to 2026-06-26 11:08:13.712457583 +0000 UTC m=+2422.324291940 I0626 11:08:13.743765 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/senlin-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"senlin-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0626 11:08:13.743896 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/senlin-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0626 11:08:13.743925 1 conditions.go:203] Setting lastTransitionTime for Certificate "senlin-api-certs" condition "Issuing" to 2026-06-26 11:08:13.743917253 +0000 UTC m=+2422.355751640 I0626 11:08:13.979662 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/senlin-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"senlin-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0626 11:08:13.987346 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "senlin-api-certs-68sdk" condition "Approved" to 2026-06-26 11:08:13.987330893 +0000 UTC m=+2422.599165240 I0626 11:08:14.009266 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "senlin-api-certs-68sdk" condition "Ready" to 2026-06-26 11:08:14.009247013 +0000 UTC m=+2422.621081400 I0626 11:08:14.051428 1 conditions.go:192] Found status change for Certificate "senlin-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-26 11:08:14.051412646 +0000 UTC m=+2422.663247003 I0626 11:08:14.075545 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/senlin-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"senlin-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0626 11:08:14.076428 1 conditions.go:192] Found status change for Certificate "senlin-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-26 11:08:14.076419407 +0000 UTC m=+2422.688253784 I0626 11:08:14.097643 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/senlin-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"senlin-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0626 11:08:14.098337 1 conditions.go:192] Found status change for Certificate "senlin-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-26 11:08:14.098327668 +0000 UTC m=+2422.710162045 I0626 11:11:55.019031 1 conditions.go:203] Setting lastTransitionTime for Certificate "heat-api-certs" condition "Ready" to 2026-06-26 11:11:55.018983823 +0000 UTC m=+2643.630818200 I0626 11:11:55.019397 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/heat-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0626 11:11:55.019502 1 conditions.go:203] Setting lastTransitionTime for Certificate "heat-api-certs" condition "Issuing" to 2026-06-26 11:11:55.019487854 +0000 UTC m=+2643.631322241 I0626 11:11:55.037813 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/heat-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"heat-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0626 11:11:55.037907 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/heat-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0626 11:11:55.037932 1 conditions.go:203] Setting lastTransitionTime for Certificate "heat-api-certs" condition "Issuing" to 2026-06-26 11:11:55.037926836 +0000 UTC m=+2643.649761193 I0626 11:11:55.232778 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/heat-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"heat-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0626 11:11:55.244082 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "heat-api-certs-fcf97" condition "Approved" to 2026-06-26 11:11:55.244070674 +0000 UTC m=+2643.855905031 I0626 11:11:55.264858 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "heat-api-certs-fcf97" condition "Ready" to 2026-06-26 11:11:55.264843359 +0000 UTC m=+2643.876677706 I0626 11:11:55.299779 1 conditions.go:192] Found status change for Certificate "heat-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-26 11:11:55.299766107 +0000 UTC m=+2643.911600454 I0626 11:11:55.321719 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/heat-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"heat-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0626 11:11:55.322290 1 conditions.go:192] Found status change for Certificate "heat-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-26 11:11:55.322284561 +0000 UTC m=+2643.934118898 I0626 11:11:55.326277 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="openstack/heat-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"heat-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0626 11:11:55.342658 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/heat-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"heat-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0626 11:11:55.344306 1 conditions.go:192] Found status change for Certificate "heat-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-26 11:11:55.344296204 +0000 UTC m=+2643.956130551 I0626 11:11:55.345755 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/heat-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"heat-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0626 11:11:56.458279 1 conditions.go:203] Setting lastTransitionTime for Certificate "heat-cfn-certs" condition "Ready" to 2026-06-26 11:11:56.45825707 +0000 UTC m=+2645.070091477 I0626 11:11:56.458366 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/heat-cfn-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0626 11:11:56.458405 1 conditions.go:203] Setting lastTransitionTime for Certificate "heat-cfn-certs" condition "Issuing" to 2026-06-26 11:11:56.458394664 +0000 UTC m=+2645.070229051 I0626 11:11:56.480040 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/heat-cfn-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"heat-cfn-certs\": the object has been modified; please apply your changes to the latest version and try again" I0626 11:11:56.480133 1 conditions.go:203] Setting lastTransitionTime for Certificate "heat-cfn-certs" condition "Ready" to 2026-06-26 11:11:56.480123469 +0000 UTC m=+2645.091957856 I0626 11:11:56.807808 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/heat-cfn-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"heat-cfn-certs\": the object has been modified; please apply your changes to the latest version and try again" I0626 11:11:56.859469 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "heat-cfn-certs-s8d2g" condition "Approved" to 2026-06-26 11:11:56.859443304 +0000 UTC m=+2645.471277661 I0626 11:11:56.883144 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "heat-cfn-certs-s8d2g" condition "Ready" to 2026-06-26 11:11:56.883129105 +0000 UTC m=+2645.494963462 I0626 11:11:56.915366 1 conditions.go:192] Found status change for Certificate "heat-cfn-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-26 11:11:56.915349511 +0000 UTC m=+2645.527183868 I0626 11:11:56.936857 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/heat-cfn-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"heat-cfn-certs\": the object has been modified; please apply your changes to the latest version and try again" I0626 11:11:56.938131 1 conditions.go:192] Found status change for Certificate "heat-cfn-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-26 11:11:56.938092791 +0000 UTC m=+2645.549927158 I0626 11:11:56.955795 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/heat-cfn-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"heat-cfn-certs\": the object has been modified; please apply your changes to the latest version and try again" I0626 11:11:56.956471 1 conditions.go:192] Found status change for Certificate "heat-cfn-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-26 11:11:56.95646405 +0000 UTC m=+2645.568298407 I0626 11:14:58.527087 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/octavia-client-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0626 11:14:58.527145 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-client-ca" condition "Issuing" to 2026-06-26 11:14:58.527133657 +0000 UTC m=+2827.138968044 I0626 11:14:58.527366 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-client-ca" condition "Ready" to 2026-06-26 11:14:58.527019415 +0000 UTC m=+2827.138853802 E0626 11:14:58.571518 1 setup.go:48] "cert-manager/issuers/setup: error getting signing CA TLS certificate" err="secret \"octavia-client-ca\" not found" resource_name="octavia-client" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0626 11:14:58.571576 1 conditions.go:96] Setting lastTransitionTime for Issuer "octavia-client" condition "Ready" to 2026-06-26 11:14:58.571564824 +0000 UTC m=+2827.183399201 I0626 11:14:58.571629 1 sync.go:62] "cert-manager/issuers: Error initializing issuer: secret \"octavia-client-ca\" not found" resource_name="octavia-client" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0626 11:14:58.576314 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/octavia-client-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-client-ca\": the object has been modified; please apply your changes to the latest version and try again" I0626 11:14:58.576405 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/octavia-client-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0626 11:14:58.576428 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-client-ca" condition "Issuing" to 2026-06-26 11:14:58.576420355 +0000 UTC m=+2827.188254712 E0626 11:14:58.630425 1 controller.go:167] "cert-manager/issuers: re-queuing item due to error processing" err="secret \"octavia-client-ca\" not found" key="openstack/octavia-client" E0626 11:14:58.630532 1 setup.go:48] "cert-manager/issuers/setup: error getting signing CA TLS certificate" err="secret \"octavia-client-ca\" not found" resource_name="octavia-client" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0626 11:14:58.630570 1 sync.go:62] "cert-manager/issuers: Error initializing issuer: secret \"octavia-client-ca\" not found" resource_name="octavia-client" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0626 11:14:58.630611 1 controller.go:167] "cert-manager/issuers: re-queuing item due to error processing" err="secret \"octavia-client-ca\" not found" key="openstack/octavia-client" I0626 11:14:58.760670 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/octavia-client-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-client-ca\": the object has been modified; please apply your changes to the latest version and try again" I0626 11:14:58.760796 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-client-ca-j84nq" condition "Approved" to 2026-06-26 11:14:58.760784222 +0000 UTC m=+2827.372618589 I0626 11:14:58.919530 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-client-ca-j84nq" condition "Ready" to 2026-06-26 11:14:58.919517142 +0000 UTC m=+2827.531351499 I0626 11:14:59.071890 1 conditions.go:192] Found status change for Certificate "octavia-client-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-26 11:14:59.071877357 +0000 UTC m=+2827.683711704 I0626 11:14:59.138520 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="openstack/octavia-client-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-client-ca\": the object has been modified; please apply your changes to the latest version and try again" I0626 11:14:59.214253 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/octavia-client-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-client-ca\": the object has been modified; please apply your changes to the latest version and try again" I0626 11:14:59.261522 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/octavia-server-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0626 11:14:59.261552 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-server-ca" condition "Issuing" to 2026-06-26 11:14:59.261547545 +0000 UTC m=+2827.873381902 I0626 11:14:59.261246 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-server-ca" condition "Ready" to 2026-06-26 11:14:59.261226428 +0000 UTC m=+2827.873060795 I0626 11:14:59.280361 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/octavia-server-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-server-ca\": the object has been modified; please apply your changes to the latest version and try again" I0626 11:14:59.280444 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/octavia-server-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0626 11:14:59.280466 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-server-ca" condition "Issuing" to 2026-06-26 11:14:59.280459487 +0000 UTC m=+2827.892293844 E0626 11:14:59.284122 1 setup.go:48] "cert-manager/issuers/setup: error getting signing CA TLS certificate" err="secret \"octavia-server-ca\" not found" resource_name="octavia-server" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0626 11:14:59.284179 1 conditions.go:96] Setting lastTransitionTime for Issuer "octavia-server" condition "Ready" to 2026-06-26 11:14:59.284167093 +0000 UTC m=+2827.896001480 I0626 11:14:59.284249 1 sync.go:62] "cert-manager/issuers: Error initializing issuer: secret \"octavia-server-ca\" not found" resource_name="octavia-server" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0626 11:14:59.302730 1 controller.go:167] "cert-manager/issuers: re-queuing item due to error processing" err="secret \"octavia-server-ca\" not found" key="openstack/octavia-server" E0626 11:14:59.303078 1 setup.go:48] "cert-manager/issuers/setup: error getting signing CA TLS certificate" err="secret \"octavia-server-ca\" not found" resource_name="octavia-server" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0626 11:14:59.303120 1 sync.go:62] "cert-manager/issuers: Error initializing issuer: secret \"octavia-server-ca\" not found" resource_name="octavia-server" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0626 11:14:59.303163 1 controller.go:167] "cert-manager/issuers: re-queuing item due to error processing" err="secret \"octavia-server-ca\" not found" key="openstack/octavia-server" I0626 11:14:59.388417 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-server-ca-k68rc" condition "Approved" to 2026-06-26 11:14:59.388405087 +0000 UTC m=+2828.000239434 I0626 11:14:59.412156 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-server-ca-k68rc" condition "Ready" to 2026-06-26 11:14:59.412141739 +0000 UTC m=+2828.023976126 I0626 11:14:59.442510 1 conditions.go:192] Found status change for Certificate "octavia-server-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-26 11:14:59.442492784 +0000 UTC m=+2828.054327141 I0626 11:14:59.467218 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/octavia-server-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-server-ca\": the object has been modified; please apply your changes to the latest version and try again" I0626 11:14:59.467386 1 conditions.go:192] Found status change for Certificate "octavia-server-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-26 11:14:59.467379313 +0000 UTC m=+2828.079213660 I0626 11:14:59.502801 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/octavia-server-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-server-ca\": the object has been modified; please apply your changes to the latest version and try again" I0626 11:15:00.044525 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/octavia-client-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0626 11:15:00.044566 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-client-certs" condition "Issuing" to 2026-06-26 11:15:00.044555804 +0000 UTC m=+2828.656390191 I0626 11:15:00.044689 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-client-certs" condition "Ready" to 2026-06-26 11:15:00.044671807 +0000 UTC m=+2828.656506154 I0626 11:15:00.073289 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/octavia-client-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-client-certs\": the object has been modified; please apply your changes to the latest version and try again" I0626 11:15:00.073446 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/octavia-client-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0626 11:15:00.073469 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-client-certs" condition "Issuing" to 2026-06-26 11:15:00.073462925 +0000 UTC m=+2828.685297282 I0626 11:15:00.168528 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/octavia-client-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-client-certs\": the object has been modified; please apply your changes to the latest version and try again" I0626 11:15:00.180946 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-client-certs-ggvkw" condition "Approved" to 2026-06-26 11:15:00.180930584 +0000 UTC m=+2828.792764941 I0626 11:15:00.214552 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-client-certs-ggvkw" condition "Ready" to 2026-06-26 11:15:00.214529972 +0000 UTC m=+2828.826364349 I0626 11:15:03.631239 1 conditions.go:85] Found status change for Issuer "octavia-client" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-26 11:15:03.631226218 +0000 UTC m=+2832.243060585 I0626 11:15:03.763304 1 conditions.go:252] Found status change for CertificateRequest "octavia-client-certs-ggvkw" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-26 11:15:03.763291358 +0000 UTC m=+2832.375125715 I0626 11:15:03.798157 1 conditions.go:192] Found status change for Certificate "octavia-client-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-26 11:15:03.798113375 +0000 UTC m=+2832.409947732 I0626 11:15:03.822718 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/octavia-client-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-client-certs\": the object has been modified; please apply your changes to the latest version and try again" I0626 11:15:03.822941 1 conditions.go:192] Found status change for Certificate "octavia-client-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-26 11:15:03.822933653 +0000 UTC m=+2832.434768010 I0626 11:15:03.841624 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/octavia-client-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-client-certs\": the object has been modified; please apply your changes to the latest version and try again" I0626 11:15:03.841854 1 conditions.go:192] Found status change for Certificate "octavia-client-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-26 11:15:03.841847725 +0000 UTC m=+2832.453682072 I0626 11:15:04.304526 1 conditions.go:85] Found status change for Issuer "octavia-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-26 11:15:04.304508288 +0000 UTC m=+2832.916342645 I0626 11:17:12.979732 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/octavia-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0626 11:17:12.979756 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-api-certs" condition "Ready" to 2026-06-26 11:17:12.979730772 +0000 UTC m=+2961.591565159 I0626 11:17:12.979765 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-api-certs" condition "Issuing" to 2026-06-26 11:17:12.979759263 +0000 UTC m=+2961.591593620 I0626 11:17:12.999352 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/octavia-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0626 11:17:12.999556 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-api-certs" condition "Ready" to 2026-06-26 11:17:12.999543136 +0000 UTC m=+2961.611377523 I0626 11:17:13.368613 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/octavia-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0626 11:17:13.410018 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-api-certs-x2wbn" condition "Approved" to 2026-06-26 11:17:13.409998033 +0000 UTC m=+2962.021832380 I0626 11:17:13.442441 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-api-certs-x2wbn" condition "Ready" to 2026-06-26 11:17:13.442427825 +0000 UTC m=+2962.054262182 I0626 11:17:13.486544 1 conditions.go:192] Found status change for Certificate "octavia-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-26 11:17:13.486528793 +0000 UTC m=+2962.098363140 I0626 11:17:13.510630 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/octavia-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0626 11:17:13.511577 1 conditions.go:192] Found status change for Certificate "octavia-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-26 11:17:13.511565016 +0000 UTC m=+2962.123399403 I0626 11:17:13.555419 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/octavia-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0626 11:18:00.261120 1 conditions.go:96] Setting lastTransitionTime for Issuer "test-selfsigned" condition "Ready" to 2026-06-26 11:18:00.261101246 +0000 UTC m=+3008.872935633 I0626 11:18:00.286291 1 conditions.go:203] Setting lastTransitionTime for Certificate "selfsigned-cert" condition "Ready" to 2026-06-26 11:18:00.286279112 +0000 UTC m=+3008.898113469 I0626 11:18:00.286311 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="cert-manager-test/selfsigned-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0626 11:18:00.286343 1 conditions.go:203] Setting lastTransitionTime for Certificate "selfsigned-cert" condition "Issuing" to 2026-06-26 11:18:00.286336013 +0000 UTC m=+3008.898170390 I0626 11:18:00.303044 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="cert-manager-test/selfsigned-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"selfsigned-cert\": the object has been modified; please apply your changes to the latest version and try again" I0626 11:18:00.303202 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="cert-manager-test/selfsigned-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0626 11:18:00.303235 1 conditions.go:203] Setting lastTransitionTime for Certificate "selfsigned-cert" condition "Issuing" to 2026-06-26 11:18:00.303226719 +0000 UTC m=+3008.915061106 E0626 11:18:00.320611 1 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"selfsigned-cert.18bc9d75742da9c4", GenerateName:"", Namespace:"cert-manager-test", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Certificate", Namespace:"cert-manager-test", Name:"selfsigned-cert", UID:"6cf10926-8fab-43b1-8a8f-155fbfeedff1", APIVersion:"cert-manager.io/v1", ResourceVersion:"27397", FieldPath:""}, Reason:"Issuing", Message:"Issuing certificate as Secret does not exist", Source:v1.EventSource{Component:"cert-manager-certificates-trigger", Host:""}, FirstTimestamp:time.Date(2026, time.June, 26, 11, 18, 0, 317757892, time.Local), LastTimestamp:time.Date(2026, time.June, 26, 11, 18, 0, 317757892, time.Local), Count:1, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "selfsigned-cert.18bc9d75742da9c4" is forbidden: unable to create new content in namespace cert-manager-test because it is being terminated' (will not retry!) E0626 11:18:00.323368 1 controller.go:134] "cert-manager/issuers: issuer in work queue no longer exists" err="issuer.cert-manager.io \"test-selfsigned\" not found" E0626 11:18:00.376693 1 controller.go:167] "cert-manager/certificates-key-manager: re-queuing item due to error processing" err="secrets \"selfsigned-cert-\" is forbidden: unable to create new content in namespace cert-manager-test because it is being terminated" key="cert-manager-test/selfsigned-cert" I0626 11:18:00.391586 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-selfsigned-issuer" condition "Ready" to 2026-06-26 11:18:00.39156784 +0000 UTC m=+3009.003402197 I0626 11:18:00.419006 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Ready" to 2026-06-26 11:18:00.418990718 +0000 UTC m=+3009.030825075 I0626 11:18:00.419117 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="capi-system/capi-serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0626 11:18:00.419135 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Issuing" to 2026-06-26 11:18:00.419131971 +0000 UTC m=+3009.030966328 I0626 11:18:00.454817 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="capi-system/capi-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0626 11:18:00.454940 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Ready" to 2026-06-26 11:18:00.45492773 +0000 UTC m=+3009.066762107 I0626 11:18:00.682265 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="capi-system/capi-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0626 11:18:00.717700 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-serving-cert-kb52d" condition "Approved" to 2026-06-26 11:18:00.717685639 +0000 UTC m=+3009.329519986 I0626 11:18:00.745549 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-serving-cert-kb52d" condition "Ready" to 2026-06-26 11:18:00.745530616 +0000 UTC m=+3009.357365003 I0626 11:18:00.780471 1 conditions.go:192] Found status change for Certificate "capi-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-26 11:18:00.780454445 +0000 UTC m=+3009.392288802 I0626 11:18:00.818755 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="capi-system/capi-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0626 11:18:00.911274 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="capi-system/capi-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0626 11:18:01.321620 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-kubeadm-bootstrap-selfsigned-issuer" condition "Ready" to 2026-06-26 11:18:01.321598782 +0000 UTC m=+3009.933433169 I0626 11:18:01.355135 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0626 11:18:01.355172 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Issuing" to 2026-06-26 11:18:01.35516345 +0000 UTC m=+3009.966997827 I0626 11:18:01.355278 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready" to 2026-06-26 11:18:01.355254802 +0000 UTC m=+3009.967089189 I0626 11:18:01.377879 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0626 11:18:01.377958 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready" to 2026-06-26 11:18:01.377950081 +0000 UTC m=+3009.989784428 I0626 11:18:01.535125 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0626 11:18:01.605893 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-bootstrap-serving-cert-tvqqq" condition "Approved" to 2026-06-26 11:18:01.605875224 +0000 UTC m=+3010.217709571 I0626 11:18:01.648203 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-bootstrap-serving-cert-tvqqq" condition "Ready" to 2026-06-26 11:18:01.648188002 +0000 UTC m=+3010.260022349 I0626 11:18:01.708760 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-26 11:18:01.708744406 +0000 UTC m=+3010.320578763 I0626 11:18:01.744208 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0626 11:18:01.816491 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0626 11:18:01.871182 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-kubeadm-control-plane-selfsigned-issuer" condition "Ready" to 2026-06-26 11:18:01.871167751 +0000 UTC m=+3010.483002088 I0626 11:18:01.898826 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready" to 2026-06-26 11:18:01.898810704 +0000 UTC m=+3010.510645061 I0626 11:18:01.898920 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0626 11:18:01.898955 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Issuing" to 2026-06-26 11:18:01.898947927 +0000 UTC m=+3010.510782284 I0626 11:18:01.919047 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0626 11:18:01.919128 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0626 11:18:01.919167 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Issuing" to 2026-06-26 11:18:01.919160739 +0000 UTC m=+3010.530995096 I0626 11:18:02.427503 1 conditions.go:96] Setting lastTransitionTime for Issuer "capo-selfsigned-issuer" condition "Ready" to 2026-06-26 11:18:02.425878669 +0000 UTC m=+3011.037713026 I0626 11:18:02.452520 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="capo-system/capo-serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0626 11:18:02.452563 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Issuing" to 2026-06-26 11:18:02.45255686 +0000 UTC m=+3011.064391207 I0626 11:18:02.454068 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Ready" to 2026-06-26 11:18:02.454060873 +0000 UTC m=+3011.065895220 I0626 11:18:02.477654 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="capo-system/capo-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0626 11:18:02.477717 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="capo-system/capo-serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0626 11:18:02.477734 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Issuing" to 2026-06-26 11:18:02.477728865 +0000 UTC m=+3011.089563212 I0626 11:18:02.617896 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-control-plane-serving-cert-h4n5b" condition "Approved" to 2026-06-26 11:18:02.6178817 +0000 UTC m=+3011.229716057 I0626 11:18:02.640643 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-control-plane-serving-cert-h4n5b" condition "Ready" to 2026-06-26 11:18:02.640626931 +0000 UTC m=+3011.252461298 I0626 11:18:02.677505 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-26 11:18:02.677495834 +0000 UTC m=+3011.289330181 I0626 11:18:02.701915 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0626 11:18:02.702347 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-26 11:18:02.702340472 +0000 UTC m=+3011.314174829 I0626 11:18:02.713435 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0626 11:18:02.726146 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0626 11:18:02.876221 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="capo-system/capo-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0626 11:18:02.923426 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capo-serving-cert-nvlbk" condition "Approved" to 2026-06-26 11:18:02.923407219 +0000 UTC m=+3011.535241576 I0626 11:18:02.992998 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capo-serving-cert-nvlbk" condition "Ready" to 2026-06-26 11:18:02.99298805 +0000 UTC m=+3011.604822407 I0626 11:18:03.481201 1 conditions.go:192] Found status change for Certificate "capo-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-26 11:18:03.481184876 +0000 UTC m=+3012.093019233 I0626 11:18:03.619460 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="capo-system/capo-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0626 11:18:03.619971 1 conditions.go:192] Found status change for Certificate "capo-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-26 11:18:03.61996295 +0000 UTC m=+3012.231797307 I0626 11:18:03.981074 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="capo-system/capo-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0626 11:21:33.774955 1 conditions.go:203] Setting lastTransitionTime for Certificate "magnum-api-certs" condition "Ready" to 2026-06-26 11:21:33.774915499 +0000 UTC m=+3222.386749846 I0626 11:21:33.775191 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/magnum-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0626 11:21:33.775206 1 conditions.go:203] Setting lastTransitionTime for Certificate "magnum-api-certs" condition "Issuing" to 2026-06-26 11:21:33.775203626 +0000 UTC m=+3222.387037973 I0626 11:21:33.793304 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/magnum-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"magnum-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0626 11:21:33.793449 1 conditions.go:203] Setting lastTransitionTime for Certificate "magnum-api-certs" condition "Ready" to 2026-06-26 11:21:33.793438573 +0000 UTC m=+3222.405272930 I0626 11:21:34.231797 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/magnum-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"magnum-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0626 11:21:34.269586 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "magnum-api-certs-d5vx9" condition "Approved" to 2026-06-26 11:21:34.269570823 +0000 UTC m=+3222.881405210 I0626 11:21:34.290439 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "magnum-api-certs-d5vx9" condition "Ready" to 2026-06-26 11:21:34.29042689 +0000 UTC m=+3222.902261237 I0626 11:21:34.322657 1 conditions.go:192] Found status change for Certificate "magnum-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-26 11:21:34.322641067 +0000 UTC m=+3222.934475424 I0626 11:21:34.345084 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="openstack/magnum-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"magnum-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0626 11:21:37.058048 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/magnum-registry-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0626 11:21:37.058076 1 conditions.go:203] Setting lastTransitionTime for Certificate "magnum-registry-certs" condition "Issuing" to 2026-06-26 11:21:37.058070662 +0000 UTC m=+3225.669905009 I0626 11:21:37.058494 1 conditions.go:203] Setting lastTransitionTime for Certificate "magnum-registry-certs" condition "Ready" to 2026-06-26 11:21:37.058490531 +0000 UTC m=+3225.670324878 I0626 11:21:37.072577 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/magnum-registry-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"magnum-registry-certs\": the object has been modified; please apply your changes to the latest version and try again" I0626 11:21:37.072685 1 conditions.go:203] Setting lastTransitionTime for Certificate "magnum-registry-certs" condition "Ready" to 2026-06-26 11:21:37.072676315 +0000 UTC m=+3225.684510672 I0626 11:21:37.309681 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/magnum-registry-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"magnum-registry-certs\": the object has been modified; please apply your changes to the latest version and try again" I0626 11:21:37.345895 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "magnum-registry-certs-tvmgp" condition "Approved" to 2026-06-26 11:21:37.345880275 +0000 UTC m=+3225.957714632 I0626 11:21:37.372494 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "magnum-registry-certs-tvmgp" condition "Ready" to 2026-06-26 11:21:37.372481022 +0000 UTC m=+3225.984315379 I0626 11:21:37.400193 1 conditions.go:192] Found status change for Certificate "magnum-registry-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-26 11:21:37.400180886 +0000 UTC m=+3226.012015223 I0626 11:21:37.436673 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/magnum-registry-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"magnum-registry-certs\": the object has been modified; please apply your changes to the latest version and try again" I0626 11:21:37.437143 1 conditions.go:192] Found status change for Certificate "magnum-registry-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-26 11:21:37.437135801 +0000 UTC m=+3226.048970148 I0626 11:21:37.466183 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="openstack/magnum-registry-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"magnum-registry-certs\": the object has been modified; please apply your changes to the latest version and try again" I0626 11:21:37.468227 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/magnum-registry-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"magnum-registry-certs\": the object has been modified; please apply your changes to the latest version and try again" I0626 11:28:30.266166 1 conditions.go:203] Setting lastTransitionTime for Certificate "manila-api-certs" condition "Ready" to 2026-06-26 11:28:30.266143898 +0000 UTC m=+3638.877978255 I0626 11:28:30.266452 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/manila-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0626 11:28:30.266561 1 conditions.go:203] Setting lastTransitionTime for Certificate "manila-api-certs" condition "Issuing" to 2026-06-26 11:28:30.266549667 +0000 UTC m=+3638.878384024 I0626 11:28:30.337870 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/manila-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"manila-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0626 11:28:30.337964 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/manila-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0626 11:28:30.337991 1 conditions.go:203] Setting lastTransitionTime for Certificate "manila-api-certs" condition "Issuing" to 2026-06-26 11:28:30.337983292 +0000 UTC m=+3638.949817649 I0626 11:28:31.153303 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "manila-api-certs-hkpwm" condition "Approved" to 2026-06-26 11:28:31.153287262 +0000 UTC m=+3639.765121629 I0626 11:28:31.223794 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "manila-api-certs-hkpwm" condition "Ready" to 2026-06-26 11:28:31.223782154 +0000 UTC m=+3639.835616511 I0626 11:28:31.490493 1 conditions.go:192] Found status change for Certificate "manila-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-26 11:28:31.490479515 +0000 UTC m=+3640.102313862 I0626 11:28:31.735670 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="openstack/manila-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"manila-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0626 11:28:31.975000 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/manila-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"manila-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0626 11:29:16.144037 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0626 11:29:16.144090 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-06-26 11:29:16.144079313 +0000 UTC m=+3684.755913690 I0626 11:29:16.144235 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-06-26 11:29:16.144204716 +0000 UTC m=+3684.756039063 I0626 11:29:16.164296 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0626 11:29:16.164437 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-06-26 11:29:16.164425869 +0000 UTC m=+3684.776260226 I0626 11:29:16.433749 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0626 11:29:16.468963 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-82fw6" condition "Approved" to 2026-06-26 11:29:16.468944665 +0000 UTC m=+3685.080779032 I0626 11:29:16.491753 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-82fw6" condition "Ready" to 2026-06-26 11:29:16.491733996 +0000 UTC m=+3685.103568383 I0626 11:29:16.524763 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-26 11:29:16.524750291 +0000 UTC m=+3685.136584648 I0626 11:29:16.546429 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0626 11:29:16.548177 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-26 11:29:16.548165357 +0000 UTC m=+3685.159999724 I0626 11:29:16.573115 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again"