I0409 13:30:30.844175 1 controller.go:284] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0409 13:30:30.844348 1 client_config.go:659] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0409 13:30:30.858296 1 options.go:259] "enabling the sig-network Gateway API certificate-shim and HTTP-01 solver" logger="cert-manager" I0409 13:30:30.858354 1 controller.go:89] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers gateway-shim ingress-shim issuers orders]" logger="cert-manager.controller" I0409 13:30:30.858382 1 controller.go:435] "serving insecurely as tls certificate data not provided" logger="cert-manager.controller" I0409 13:30:30.858399 1 controller.go:102] "listening for insecure connections" logger="cert-manager.controller" address="0.0.0.0:9402" I0409 13:30:30.858826 1 controller.go:178] "starting leader election" logger="cert-manager.controller" I0409 13:30:30.858882 1 controller.go:127] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0409 13:30:30.858972 1 controller.go:171] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0409 13:30:30.863779 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0409 13:30:30.875520 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0409 13:30:30.881963 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0409 13:30:30.887277 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0409 13:30:30.893819 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0409 13:30:30.905191 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0409 13:30:30.910943 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0409 13:30:30.916470 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0409 13:30:30.922294 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0409 13:30:30.928040 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0409 13:30:30.934290 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0409 13:30:30.941336 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0409 13:30:30.945292 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0409 13:30:30.949251 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0409 13:30:30.952990 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0409 13:30:30.957298 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="orders" I0409 13:30:30.962445 1 controller.go:225] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0409 13:30:30.962465 1 controller.go:225] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0409 13:30:30.962537 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0409 13:30:30.967085 1 controller.go:225] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0409 13:30:30.967104 1 controller.go:225] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0409 13:30:30.967113 1 controller.go:225] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0409 13:30:30.967723 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="gateway-shim" I0409 13:30:30.974739 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0409 13:30:30.978906 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="issuers" I0409 13:30:30.983053 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="challenges" I0409 13:30:30.986362 1 reflector.go:359] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0409 13:30:30.986851 1 reflector.go:359] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0409 13:30:30.987102 1 reflector.go:359] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0409 13:30:30.987169 1 reflector.go:359] Caches populated for *v1.Secret from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0409 13:30:30.987447 1 reflector.go:359] Caches populated for *v1.Ingress from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0409 13:30:30.987471 1 reflector.go:359] Caches populated for *v1.Gateway from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0409 13:30:30.987502 1 reflector.go:359] Caches populated for *v1.HTTPRoute from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0409 13:30:31.001814 1 reflector.go:359] Caches populated for *v1.Order from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0409 13:30:31.020459 1 reflector.go:359] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0409 13:30:31.039757 1 reflector.go:359] Caches populated for *v1.Issuer from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0409 13:30:31.058016 1 reflector.go:359] Caches populated for *v1.Challenge from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0409 13:30:31.075260 1 reflector.go:359] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0409 13:30:31.091981 1 reflector.go:359] Caches populated for *v1.Certificate from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0409 13:30:44.063772 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-04-09 13:30:44.063755219 +0000 UTC m=+13.247116464 I0409 13:30:44.819169 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 13:30:44.819201 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-09 13:30:44.819194453 +0000 UTC m=+14.002555698 I0409 13:30:44.820213 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-09 13:30:44.820207545 +0000 UTC m=+14.003568790 I0409 13:30:44.832679 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0409 13:30:44.832811 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-09 13:30:44.832800492 +0000 UTC m=+14.016161737 E0409 13:30:44.833269 1 setup.go:48] "error getting signing CA TLS certificate" err="secrets \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.controller.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0409 13:30:44.833343 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-04-09 13:30:44.833334263 +0000 UTC m=+14.016695508 E0409 13:30:44.833375 1 sync.go:62] "error setting up issuer" err="secrets \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.controller" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0409 13:30:44.843783 1 controller.go:162] "re-queuing item due to error processing" err="secrets \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.controller" key="atmosphere" E0409 13:30:44.843945 1 setup.go:48] "error getting signing CA TLS certificate" err="secrets \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.controller.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0409 13:30:44.843979 1 sync.go:62] "error setting up issuer" err="secrets \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.controller" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0409 13:30:44.844013 1 controller.go:162] "re-queuing item due to error processing" err="secrets \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.controller" key="atmosphere" I0409 13:30:44.845821 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0409 13:30:44.849796 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0409 13:30:44.882388 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-1" condition "Approved" to 2026-04-09 13:30:44.882373363 +0000 UTC m=+14.065734638 I0409 13:30:44.911390 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-1" condition "Ready" to 2026-04-09 13:30:44.911374399 +0000 UTC m=+14.094735674 I0409 13:30:44.931674 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 13:30:44.931662968 +0000 UTC m=+14.115024223 I0409 13:30:44.947763 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0409 13:30:44.948201 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 13:30:44.948191529 +0000 UTC m=+14.131552794 I0409 13:30:44.957971 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0409 13:30:44.964170 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0409 13:30:49.844812 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 13:30:49.84478991 +0000 UTC m=+19.028151155 I0409 13:31:05.812622 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="envoy-gateway-system/gateway-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 13:31:05.812726 1 conditions.go:203] Setting lastTransitionTime for Certificate "gateway-tls" condition "Issuing" to 2026-04-09 13:31:05.812715484 +0000 UTC m=+34.996076749 I0409 13:31:05.812755 1 conditions.go:203] Setting lastTransitionTime for Certificate "gateway-tls" condition "Ready" to 2026-04-09 13:31:05.812727484 +0000 UTC m=+34.996088759 I0409 13:31:05.823071 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="envoy-gateway-system/gateway-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"gateway-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 13:31:05.823171 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="envoy-gateway-system/gateway-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 13:31:05.823193 1 conditions.go:203] Setting lastTransitionTime for Certificate "gateway-tls" condition "Issuing" to 2026-04-09 13:31:05.823185836 +0000 UTC m=+35.006547081 I0409 13:31:05.936801 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "gateway-tls-1" condition "Approved" to 2026-04-09 13:31:05.936787095 +0000 UTC m=+35.120148340 I0409 13:31:05.952865 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "gateway-tls-1" condition "Ready" to 2026-04-09 13:31:05.952853336 +0000 UTC m=+35.136214581 I0409 13:31:05.976542 1 conditions.go:192] Found status change for Certificate "gateway-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 13:31:05.976528049 +0000 UTC m=+35.159889284 I0409 13:31:05.994169 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="envoy-gateway-system/gateway-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"gateway-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 13:31:05.994926 1 conditions.go:192] Found status change for Certificate "gateway-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 13:31:05.994917119 +0000 UTC m=+35.178278364 I0409 13:31:06.015351 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="envoy-gateway-system/gateway-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"gateway-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 13:31:14.028370 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-04-09 13:31:14.028356938 +0000 UTC m=+43.211718183 I0409 13:31:14.028805 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 13:31:14.028875 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-09 13:31:14.028864718 +0000 UTC m=+43.212225963 I0409 13:31:14.038636 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-04-09 13:31:14.038624132 +0000 UTC m=+43.221985397 I0409 13:31:14.044830 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0409 13:31:14.044936 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 13:31:14.044979 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-09 13:31:14.044970898 +0000 UTC m=+43.228332143 I0409 13:31:14.423888 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0409 13:31:14.440085 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-1" condition "Approved" to 2026-04-09 13:31:14.440064746 +0000 UTC m=+43.623426011 I0409 13:31:14.462682 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-1" condition "Ready" to 2026-04-09 13:31:14.462668965 +0000 UTC m=+43.646030210 I0409 13:31:14.484089 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 13:31:14.484080061 +0000 UTC m=+43.667441306 I0409 13:31:14.499797 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0409 13:31:14.543706 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0409 13:32:57.499512 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-04-09 13:32:57.499476187 +0000 UTC m=+146.682837452 I0409 13:32:57.499528 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 13:32:57.499681 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-04-09 13:32:57.499659032 +0000 UTC m=+146.683020307 E0409 13:32:57.512873 1 setup.go:48] "error getting signing CA TLS certificate" err="secrets \"valkey-ca\" not found" logger="cert-manager.controller.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0409 13:32:57.512924 1 conditions.go:96] Setting lastTransitionTime for Issuer "valkey" condition "Ready" to 2026-04-09 13:32:57.512917351 +0000 UTC m=+146.696278596 I0409 13:32:57.512969 1 sync.go:62] "Error initializing issuer: secrets \"valkey-ca\" not found" logger="cert-manager.controller" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0409 13:32:57.514248 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0409 13:32:57.514362 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-04-09 13:32:57.51434995 +0000 UTC m=+146.697711225 E0409 13:32:57.520480 1 controller.go:162] "re-queuing item due to error processing" err="secrets \"valkey-ca\" not found" logger="cert-manager.controller" key="openstack/valkey" E0409 13:32:57.520808 1 setup.go:48] "error getting signing CA TLS certificate" err="secrets \"valkey-ca\" not found" logger="cert-manager.controller.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0409 13:32:57.520916 1 sync.go:62] "Error initializing issuer: secrets \"valkey-ca\" not found" logger="cert-manager.controller" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0409 13:32:57.520973 1 controller.go:162] "re-queuing item due to error processing" err="secrets \"valkey-ca\" not found" logger="cert-manager.controller" key="openstack/valkey" I0409 13:32:57.523369 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-04-09 13:32:57.523355772 +0000 UTC m=+146.706717017 I0409 13:32:57.523378 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 13:32:57.523434 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-04-09 13:32:57.523423355 +0000 UTC m=+146.706784630 I0409 13:32:57.533197 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0409 13:32:57.533310 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 13:32:57.533346 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-04-09 13:32:57.533336266 +0000 UTC m=+146.716697531 I0409 13:32:57.860210 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-1" condition "Approved" to 2026-04-09 13:32:57.860195621 +0000 UTC m=+147.043556896 I0409 13:32:57.871575 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-1" condition "Ready" to 2026-04-09 13:32:57.871550321 +0000 UTC m=+147.054911576 I0409 13:32:57.961087 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0409 13:32:57.986212 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-1" condition "Approved" to 2026-04-09 13:32:57.986195252 +0000 UTC m=+147.169556527 I0409 13:32:58.002452 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-1" condition "Ready" to 2026-04-09 13:32:58.002441573 +0000 UTC m=+147.185802828 I0409 13:32:58.021493 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 13:32:58.021482709 +0000 UTC m=+147.204843954 I0409 13:32:58.034198 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0409 13:33:02.520979 1 conditions.go:85] Found status change for Issuer "valkey" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 13:33:02.520964633 +0000 UTC m=+151.704325898 I0409 13:33:02.534481 1 conditions.go:252] Found status change for CertificateRequest "valkey-server-1" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 13:33:02.534471218 +0000 UTC m=+151.717832483 I0409 13:33:02.563932 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 13:33:02.563921527 +0000 UTC m=+151.747282762 I0409 13:33:02.580058 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0409 13:33:02.580759 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 13:33:02.580748629 +0000 UTC m=+151.764109904 I0409 13:33:02.587671 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0409 13:33:02.599897 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0409 13:35:29.017436 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-95.nip.io-tls" condition "Ready" to 2026-04-09 13:35:29.01740118 +0000 UTC m=+298.200762475 I0409 13:35:29.017536 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="auth-system/keycloak.199-204-45-95.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 13:35:29.017642 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-95.nip.io-tls" condition "Issuing" to 2026-04-09 13:35:29.017628164 +0000 UTC m=+298.200989439 I0409 13:35:29.027337 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="auth-system/keycloak.199-204-45-95.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-95.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 13:35:29.027399 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-95.nip.io-tls" condition "Ready" to 2026-04-09 13:35:29.027392832 +0000 UTC m=+298.210754077 I0409 13:35:29.245857 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="auth-system/keycloak.199-204-45-95.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-95.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 13:35:29.273482 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-95.nip.io-tls-1" condition "Approved" to 2026-04-09 13:35:29.27347013 +0000 UTC m=+298.456831375 I0409 13:35:29.292336 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-95.nip.io-tls-1" condition "Ready" to 2026-04-09 13:35:29.292319284 +0000 UTC m=+298.475680529 I0409 13:35:29.313548 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-95.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 13:35:29.313539342 +0000 UTC m=+298.496900587 I0409 13:35:29.326473 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="auth-system/keycloak.199-204-45-95.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-95.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 13:35:29.326990 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-95.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 13:35:29.326983881 +0000 UTC m=+298.510345126 I0409 13:35:29.335693 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="auth-system/keycloak.199-204-45-95.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-95.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 13:35:29.343389 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="auth-system/keycloak.199-204-45-95.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-95.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 13:36:42.829128 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 13:36:42.829184 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-09 13:36:42.829150631 +0000 UTC m=+372.012511866 I0409 13:36:42.829187 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-09 13:36:42.829171092 +0000 UTC m=+372.012532367 E0409 13:36:42.841117 1 setup.go:48] "error getting signing CA TLS certificate" err="secrets \"kube-prometheus-stack-ca\" not found" logger="cert-manager.controller.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0409 13:36:42.841172 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-04-09 13:36:42.841167805 +0000 UTC m=+372.024529040 E0409 13:36:42.841184 1 sync.go:62] "error setting up issuer" err="secrets \"kube-prometheus-stack-ca\" not found" logger="cert-manager.controller" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0409 13:36:42.842875 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0409 13:36:42.842958 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 13:36:42.842984 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-09 13:36:42.842976988 +0000 UTC m=+372.026338233 E0409 13:36:42.847314 1 controller.go:162] "re-queuing item due to error processing" err="secrets \"kube-prometheus-stack-ca\" not found" logger="cert-manager.controller" key="kube-prometheus-stack" E0409 13:36:42.847426 1 setup.go:48] "error getting signing CA TLS certificate" err="secrets \"kube-prometheus-stack-ca\" not found" logger="cert-manager.controller.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0409 13:36:42.847490 1 sync.go:62] "error setting up issuer" err="secrets \"kube-prometheus-stack-ca\" not found" logger="cert-manager.controller" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0409 13:36:42.847542 1 controller.go:162] "re-queuing item due to error processing" err="secrets \"kube-prometheus-stack-ca\" not found" logger="cert-manager.controller" key="kube-prometheus-stack" I0409 13:36:42.877925 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-1" condition "Approved" to 2026-04-09 13:36:42.877905861 +0000 UTC m=+372.061267106 I0409 13:36:42.891492 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-1" condition "Ready" to 2026-04-09 13:36:42.891481293 +0000 UTC m=+372.074842538 I0409 13:36:42.913719 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 13:36:42.913701249 +0000 UTC m=+372.097062534 I0409 13:36:42.925599 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0409 13:36:47.848635 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 13:36:47.848621263 +0000 UTC m=+377.031982538 I0409 13:37:33.471727 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-229p8-tls" condition "Ready" to 2026-04-09 13:37:33.471713013 +0000 UTC m=+422.655074258 I0409 13:37:33.472011 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-229p8-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 13:37:33.472064 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-229p8-tls" condition "Issuing" to 2026-04-09 13:37:33.472053229 +0000 UTC m=+422.655414474 I0409 13:37:33.481306 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-229p8-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-229p8-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 13:37:33.481419 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-229p8-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 13:37:33.481456 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-229p8-tls" condition "Issuing" to 2026-04-09 13:37:33.481445197 +0000 UTC m=+422.664806472 I0409 13:37:33.732678 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-229p8-tls-1" condition "Approved" to 2026-04-09 13:37:33.732669438 +0000 UTC m=+422.916030663 I0409 13:37:33.749167 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-229p8-tls-1" condition "Ready" to 2026-04-09 13:37:33.749153662 +0000 UTC m=+422.932514927 I0409 13:37:33.771474 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-229p8-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 13:37:33.77145979 +0000 UTC m=+422.954821035 I0409 13:37:33.782666 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-229p8-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-229p8-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 13:37:33.783668 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-229p8-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 13:37:33.783659088 +0000 UTC m=+422.967020333 I0409 13:37:33.806508 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-229p8-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-229p8-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 13:37:33.807245 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-229p8-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 13:37:33.807236797 +0000 UTC m=+422.990598042 I0409 13:37:46.880136 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 13:37:46.880170 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-04-09 13:37:46.880148488 +0000 UTC m=+436.063509763 I0409 13:37:46.880186 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-09 13:37:46.880173949 +0000 UTC m=+436.063535214 I0409 13:37:46.899433 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 13:37:46.899533 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-04-09 13:37:46.899522938 +0000 UTC m=+436.082884203 I0409 13:37:47.086830 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 13:37:47.128298 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-1" condition "Approved" to 2026-04-09 13:37:47.128278451 +0000 UTC m=+436.311639726 I0409 13:37:47.150248 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-1" condition "Ready" to 2026-04-09 13:37:47.150237917 +0000 UTC m=+436.333599162 I0409 13:37:47.197457 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 13:37:47.197441608 +0000 UTC m=+436.380802853 I0409 13:37:47.215864 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 13:37:47.216541 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 13:37:47.216533332 +0000 UTC m=+436.399894577 I0409 13:37:47.251572 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 13:41:23.505384 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 13:41:23.505505 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-04-09 13:41:23.505473981 +0000 UTC m=+652.688835256 I0409 13:41:23.505540 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-04-09 13:41:23.505517542 +0000 UTC m=+652.688878807 I0409 13:41:23.518087 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 13:41:23.518213 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-04-09 13:41:23.518205544 +0000 UTC m=+652.701566809 I0409 13:41:23.597908 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 13:41:23.636851 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-1" condition "Approved" to 2026-04-09 13:41:23.636828362 +0000 UTC m=+652.820189647 I0409 13:41:23.649765 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-1" condition "Ready" to 2026-04-09 13:41:23.649749521 +0000 UTC m=+652.833110766 I0409 13:41:23.675764 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 13:41:23.675746913 +0000 UTC m=+652.859108148 I0409 13:41:23.688550 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 13:41:23.688944 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 13:41:23.68893635 +0000 UTC m=+652.872297585 I0409 13:41:23.699646 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 13:41:23.702442 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 13:43:59.967878 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 13:43:59.968026 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-04-09 13:43:59.96800636 +0000 UTC m=+809.151367605 I0409 13:43:59.968113 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-04-09 13:43:59.968096962 +0000 UTC m=+809.151458207 I0409 13:43:59.979255 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 13:43:59.979484 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-04-09 13:43:59.979471755 +0000 UTC m=+809.162833010 I0409 13:44:00.215572 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 13:44:00.248612 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-1" condition "Approved" to 2026-04-09 13:44:00.248595236 +0000 UTC m=+809.431956501 I0409 13:44:00.265891 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-1" condition "Ready" to 2026-04-09 13:44:00.265880481 +0000 UTC m=+809.449241726 I0409 13:44:00.297191 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 13:44:00.297162947 +0000 UTC m=+809.480524262 I0409 13:44:00.310092 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 13:44:00.311450 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 13:44:00.311438444 +0000 UTC m=+809.494799689 I0409 13:44:00.323613 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 13:44:00.331882 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 13:45:19.926329 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 13:45:19.926425 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-04-09 13:45:19.926402602 +0000 UTC m=+889.109763847 I0409 13:45:19.926422 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-04-09 13:45:19.926389002 +0000 UTC m=+889.109750247 I0409 13:45:19.943545 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 13:45:19.943744 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-04-09 13:45:19.943666722 +0000 UTC m=+889.127027997 I0409 13:45:20.072929 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 13:45:20.103853 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-1" condition "Approved" to 2026-04-09 13:45:20.103840247 +0000 UTC m=+889.287201482 I0409 13:45:20.120524 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-1" condition "Ready" to 2026-04-09 13:45:20.120513465 +0000 UTC m=+889.303874690 I0409 13:45:20.138501 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 13:45:20.138485088 +0000 UTC m=+889.321846333 I0409 13:45:20.214624 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 13:45:20.249901 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 13:49:18.199002 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 13:49:18.199096 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-04-09 13:49:18.199068461 +0000 UTC m=+1127.382429736 I0409 13:49:18.199162 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-04-09 13:49:18.199126342 +0000 UTC m=+1127.382487587 I0409 13:49:18.219645 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 13:49:18.219743 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 13:49:18.219772 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-04-09 13:49:18.219764872 +0000 UTC m=+1127.403126097 I0409 13:49:18.441907 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 13:49:18.453816 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-1" condition "Approved" to 2026-04-09 13:49:18.453806388 +0000 UTC m=+1127.637167623 I0409 13:49:18.472356 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-1" condition "Ready" to 2026-04-09 13:49:18.472345768 +0000 UTC m=+1127.655707013 I0409 13:49:18.502953 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 13:49:18.502939896 +0000 UTC m=+1127.686301141 I0409 13:49:18.514933 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 13:49:18.515817 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 13:49:18.515810788 +0000 UTC m=+1127.699172033 I0409 13:49:18.530948 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 13:49:18.531428 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 13:49:18.531422754 +0000 UTC m=+1127.714783999 I0409 13:57:16.461830 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/cinder-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 13:57:16.461892 1 conditions.go:203] Setting lastTransitionTime for Certificate "cinder-api-certs" condition "Issuing" to 2026-04-09 13:57:16.461885171 +0000 UTC m=+1605.645246436 I0409 13:57:16.461831 1 conditions.go:203] Setting lastTransitionTime for Certificate "cinder-api-certs" condition "Ready" to 2026-04-09 13:57:16.4617936 +0000 UTC m=+1605.645154865 I0409 13:57:16.478562 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/cinder-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"cinder-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 13:57:16.478726 1 conditions.go:203] Setting lastTransitionTime for Certificate "cinder-api-certs" condition "Ready" to 2026-04-09 13:57:16.478717323 +0000 UTC m=+1605.662078588 I0409 13:57:16.560066 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/cinder-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"cinder-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 13:57:16.593540 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "cinder-api-certs-1" condition "Approved" to 2026-04-09 13:57:16.59352839 +0000 UTC m=+1605.776889635 I0409 13:57:16.608491 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "cinder-api-certs-1" condition "Ready" to 2026-04-09 13:57:16.608478037 +0000 UTC m=+1605.791839282 I0409 13:57:16.636939 1 conditions.go:192] Found status change for Certificate "cinder-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 13:57:16.636926624 +0000 UTC m=+1605.820287869 I0409 13:57:16.653068 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/cinder-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"cinder-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 13:57:16.653578 1 conditions.go:192] Found status change for Certificate "cinder-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 13:57:16.653571202 +0000 UTC m=+1605.836932447 I0409 13:57:16.665188 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/cinder-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"cinder-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 13:57:16.665376 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/cinder-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"cinder-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 13:58:55.885854 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/placement-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 13:58:55.885907 1 conditions.go:203] Setting lastTransitionTime for Certificate "placement-api-certs" condition "Issuing" to 2026-04-09 13:58:55.885900553 +0000 UTC m=+1705.069261798 I0409 13:58:55.886228 1 conditions.go:203] Setting lastTransitionTime for Certificate "placement-api-certs" condition "Ready" to 2026-04-09 13:58:55.886221519 +0000 UTC m=+1705.069582764 I0409 13:58:55.905173 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/placement-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"placement-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 13:58:55.905258 1 conditions.go:203] Setting lastTransitionTime for Certificate "placement-api-certs" condition "Ready" to 2026-04-09 13:58:55.90525167 +0000 UTC m=+1705.088612895 I0409 13:58:55.989350 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/placement-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"placement-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 13:58:56.027605 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "placement-api-certs-1" condition "Approved" to 2026-04-09 13:58:56.02759086 +0000 UTC m=+1705.210952105 I0409 13:58:56.043229 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "placement-api-certs-1" condition "Ready" to 2026-04-09 13:58:56.043214448 +0000 UTC m=+1705.226575693 I0409 13:58:56.071100 1 conditions.go:192] Found status change for Certificate "placement-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 13:58:56.071089053 +0000 UTC m=+1705.254450288 I0409 13:58:56.089203 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/placement-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"placement-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 13:58:56.089716 1 conditions.go:192] Found status change for Certificate "placement-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 13:58:56.089707357 +0000 UTC m=+1705.273068592 I0409 13:58:56.101253 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/placement-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"placement-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 13:58:56.107545 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/placement-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"placement-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 13:59:56.620487 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-vnc-ca" condition "Ready" to 2026-04-09 13:59:56.62046322 +0000 UTC m=+1765.803824495 I0409 13:59:56.621316 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/libvirt-vnc-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 13:59:56.621384 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-vnc-ca" condition "Issuing" to 2026-04-09 13:59:56.621375358 +0000 UTC m=+1765.804736623 I0409 13:59:56.632989 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/libvirt-vnc-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-vnc-ca\": the object has been modified; please apply your changes to the latest version and try again" I0409 13:59:56.633120 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/libvirt-vnc-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 13:59:56.633161 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-vnc-ca" condition "Issuing" to 2026-04-09 13:59:56.633150085 +0000 UTC m=+1765.816511350 I0409 13:59:56.665782 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/libvirt-vnc-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-vnc-ca\": the object has been modified; please apply your changes to the latest version and try again" I0409 13:59:56.672301 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-vnc-ca-1" condition "Approved" to 2026-04-09 13:59:56.672291267 +0000 UTC m=+1765.855652512 I0409 13:59:56.687824 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-vnc-ca-1" condition "Ready" to 2026-04-09 13:59:56.687814814 +0000 UTC m=+1765.871176049 I0409 13:59:56.707724 1 conditions.go:192] Found status change for Certificate "libvirt-vnc-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 13:59:56.707713483 +0000 UTC m=+1765.891074728 I0409 13:59:56.719998 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/libvirt-vnc-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-vnc-ca\": the object has been modified; please apply your changes to the latest version and try again" I0409 13:59:56.720388 1 conditions.go:192] Found status change for Certificate "libvirt-vnc-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 13:59:56.720380827 +0000 UTC m=+1765.903742072 I0409 13:59:56.742635 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/libvirt-vnc-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-vnc-ca\": the object has been modified; please apply your changes to the latest version and try again" I0409 13:59:57.239694 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-api-ca" condition "Ready" to 2026-04-09 13:59:57.239679959 +0000 UTC m=+1766.423041234 I0409 13:59:57.240062 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/libvirt-api-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 13:59:57.240081 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-api-ca" condition "Issuing" to 2026-04-09 13:59:57.240077276 +0000 UTC m=+1766.423438521 I0409 13:59:57.253788 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/libvirt-api-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-api-ca\": the object has been modified; please apply your changes to the latest version and try again" I0409 13:59:57.253921 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/libvirt-api-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 13:59:57.253955 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-api-ca" condition "Issuing" to 2026-04-09 13:59:57.253945532 +0000 UTC m=+1766.437306807 I0409 13:59:57.296434 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-api-ca-1" condition "Approved" to 2026-04-09 13:59:57.296418107 +0000 UTC m=+1766.479779352 I0409 13:59:57.310118 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-api-ca-1" condition "Ready" to 2026-04-09 13:59:57.31010853 +0000 UTC m=+1766.493469775 I0409 13:59:57.331325 1 conditions.go:192] Found status change for Certificate "libvirt-api-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 13:59:57.331312061 +0000 UTC m=+1766.514673306 I0409 13:59:57.346269 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/libvirt-api-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-api-ca\": the object has been modified; please apply your changes to the latest version and try again" I0409 13:59:57.347291 1 conditions.go:192] Found status change for Certificate "libvirt-api-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 13:59:57.347274536 +0000 UTC m=+1766.530635791 I0409 13:59:57.361155 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/libvirt-api-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-api-ca\": the object has been modified; please apply your changes to the latest version and try again" I0409 13:59:57.367982 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/libvirt-api-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-api-ca\": the object has been modified; please apply your changes to the latest version and try again" I0409 13:59:57.919176 1 conditions.go:96] Setting lastTransitionTime for Issuer "libvirt-vnc" condition "Ready" to 2026-04-09 13:59:57.9191636 +0000 UTC m=+1767.102524845 I0409 13:59:58.511904 1 conditions.go:96] Setting lastTransitionTime for Issuer "libvirt-api" condition "Ready" to 2026-04-09 13:59:58.511893619 +0000 UTC m=+1767.695254864 I0409 14:00:44.589897 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-novncproxy-vencrypt" condition "Ready" to 2026-04-09 14:00:44.589879972 +0000 UTC m=+1813.773241217 I0409 14:00:44.590497 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/nova-novncproxy-vencrypt" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 14:00:44.590524 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-novncproxy-vencrypt" condition "Issuing" to 2026-04-09 14:00:44.590514904 +0000 UTC m=+1813.773876149 I0409 14:00:44.615748 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/nova-novncproxy-vencrypt" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-novncproxy-vencrypt\": the object has been modified; please apply your changes to the latest version and try again" I0409 14:00:44.615836 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-novncproxy-vencrypt" condition "Ready" to 2026-04-09 14:00:44.615829002 +0000 UTC m=+1813.799190237 I0409 14:00:48.694777 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/nova-novncproxy-vencrypt" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-novncproxy-vencrypt\": the object has been modified; please apply your changes to the latest version and try again" I0409 14:00:48.742007 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "nova-novncproxy-vencrypt-1" condition "Approved" to 2026-04-09 14:00:48.7419884 +0000 UTC m=+1817.925349645 I0409 14:00:48.866746 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "nova-novncproxy-vencrypt-1" condition "Ready" to 2026-04-09 14:00:48.866734894 +0000 UTC m=+1818.050096139 I0409 14:00:48.897727 1 conditions.go:192] Found status change for Certificate "nova-novncproxy-vencrypt" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 14:00:48.897717286 +0000 UTC m=+1818.081078531 I0409 14:00:48.909719 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/nova-novncproxy-vencrypt" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-novncproxy-vencrypt\": the object has been modified; please apply your changes to the latest version and try again" I0409 14:00:48.910968 1 conditions.go:192] Found status change for Certificate "nova-novncproxy-vencrypt" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 14:00:48.91096213 +0000 UTC m=+1818.094323365 I0409 14:00:48.924465 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/nova-novncproxy-vencrypt" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-novncproxy-vencrypt\": the object has been modified; please apply your changes to the latest version and try again" I0409 14:00:48.928278 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/nova-novncproxy-vencrypt" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-novncproxy-vencrypt\": the object has been modified; please apply your changes to the latest version and try again" I0409 14:03:26.684145 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/nova-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 14:03:26.684238 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-api-certs" condition "Issuing" to 2026-04-09 14:03:26.684219425 +0000 UTC m=+1975.867580670 I0409 14:03:26.684286 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-api-certs" condition "Ready" to 2026-04-09 14:03:26.684268536 +0000 UTC m=+1975.867629781 I0409 14:03:26.694141 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/nova-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 14:03:26.694219 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-api-certs" condition "Ready" to 2026-04-09 14:03:26.694214102 +0000 UTC m=+1975.877575347 I0409 14:03:26.908217 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/nova-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 14:03:26.980949 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "nova-api-certs-1" condition "Approved" to 2026-04-09 14:03:26.980934116 +0000 UTC m=+1976.164295361 I0409 14:03:26.999164 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "nova-api-certs-1" condition "Ready" to 2026-04-09 14:03:26.999153847 +0000 UTC m=+1976.182515082 I0409 14:03:27.024704 1 conditions.go:192] Found status change for Certificate "nova-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 14:03:27.024685756 +0000 UTC m=+1976.208047021 I0409 14:03:27.041630 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/nova-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 14:03:27.042032 1 conditions.go:192] Found status change for Certificate "nova-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 14:03:27.04202586 +0000 UTC m=+1976.225387095 I0409 14:03:27.052649 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/nova-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 14:03:27.056606 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/nova-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 14:03:33.019572 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-novncproxy-certs" condition "Ready" to 2026-04-09 14:03:33.019555455 +0000 UTC m=+1982.202916700 I0409 14:03:33.020524 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/nova-novncproxy-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 14:03:33.020661 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-novncproxy-certs" condition "Issuing" to 2026-04-09 14:03:33.020655184 +0000 UTC m=+1982.204016449 I0409 14:03:33.030003 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/nova-novncproxy-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-novncproxy-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 14:03:33.030122 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/nova-novncproxy-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 14:03:33.030159 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-novncproxy-certs" condition "Issuing" to 2026-04-09 14:03:33.030153053 +0000 UTC m=+1982.213514288 I0409 14:03:33.229824 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/nova-novncproxy-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-novncproxy-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 14:03:33.245730 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "nova-novncproxy-certs-1" condition "Approved" to 2026-04-09 14:03:33.245702553 +0000 UTC m=+1982.429063828 I0409 14:03:33.267839 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "nova-novncproxy-certs-1" condition "Ready" to 2026-04-09 14:03:33.267825887 +0000 UTC m=+1982.451187132 I0409 14:03:33.313177 1 conditions.go:192] Found status change for Certificate "nova-novncproxy-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 14:03:33.313149666 +0000 UTC m=+1982.496510921 I0409 14:03:33.330325 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/nova-novncproxy-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-novncproxy-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 14:03:33.331019 1 conditions.go:192] Found status change for Certificate "nova-novncproxy-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 14:03:33.331007901 +0000 UTC m=+1982.514369146 I0409 14:03:33.353123 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/nova-novncproxy-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-novncproxy-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 14:06:42.546724 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/neutron-server-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 14:06:42.546834 1 conditions.go:203] Setting lastTransitionTime for Certificate "neutron-server-certs" condition "Issuing" to 2026-04-09 14:06:42.546825238 +0000 UTC m=+2171.730186483 I0409 14:06:42.546952 1 conditions.go:203] Setting lastTransitionTime for Certificate "neutron-server-certs" condition "Ready" to 2026-04-09 14:06:42.54693079 +0000 UTC m=+2171.730292065 I0409 14:06:42.560460 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/neutron-server-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"neutron-server-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 14:06:42.560570 1 conditions.go:203] Setting lastTransitionTime for Certificate "neutron-server-certs" condition "Ready" to 2026-04-09 14:06:42.560562156 +0000 UTC m=+2171.743923401 I0409 14:06:42.705694 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/neutron-server-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"neutron-server-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 14:06:42.742544 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "neutron-server-certs-1" condition "Approved" to 2026-04-09 14:06:42.742527336 +0000 UTC m=+2171.925888571 I0409 14:06:42.758670 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "neutron-server-certs-1" condition "Ready" to 2026-04-09 14:06:42.758654979 +0000 UTC m=+2171.942016234 I0409 14:06:42.788747 1 conditions.go:192] Found status change for Certificate "neutron-server-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 14:06:42.788730072 +0000 UTC m=+2171.972091337 I0409 14:06:42.802627 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/neutron-server-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"neutron-server-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 14:06:42.803459 1 conditions.go:192] Found status change for Certificate "neutron-server-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 14:06:42.803447358 +0000 UTC m=+2171.986808623 I0409 14:06:42.811483 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/neutron-server-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"neutron-server-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 14:06:42.820353 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/neutron-server-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"neutron-server-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 14:07:44.799600 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/libvirt-libvirt-default-8d8rq-vnc" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 14:07:44.799668 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-libvirt-default-8d8rq-vnc" condition "Issuing" to 2026-04-09 14:07:44.799660941 +0000 UTC m=+2233.983022196 I0409 14:07:44.799679 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-libvirt-default-8d8rq-vnc" condition "Ready" to 2026-04-09 14:07:44.799665571 +0000 UTC m=+2233.983026806 I0409 14:07:44.800897 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-libvirt-default-8d8rq-api" condition "Ready" to 2026-04-09 14:07:44.800874614 +0000 UTC m=+2233.984235889 I0409 14:07:44.801175 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/libvirt-libvirt-default-8d8rq-api" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 14:07:44.801230 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-libvirt-default-8d8rq-api" condition "Issuing" to 2026-04-09 14:07:44.80121511 +0000 UTC m=+2233.984576365 I0409 14:07:44.823026 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/libvirt-libvirt-default-8d8rq-api" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-libvirt-default-8d8rq-api\": the object has been modified; please apply your changes to the latest version and try again" I0409 14:07:44.823270 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/libvirt-libvirt-default-8d8rq-api" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 14:07:44.823321 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-libvirt-default-8d8rq-api" condition "Issuing" to 2026-04-09 14:07:44.823309395 +0000 UTC m=+2234.006670660 I0409 14:07:44.823776 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/libvirt-libvirt-default-8d8rq-vnc" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-libvirt-default-8d8rq-vnc\": the object has been modified; please apply your changes to the latest version and try again" I0409 14:07:44.823855 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-libvirt-default-8d8rq-vnc" condition "Ready" to 2026-04-09 14:07:44.823847565 +0000 UTC m=+2234.007208830 I0409 14:07:44.934941 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/libvirt-libvirt-default-8d8rq-vnc" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-libvirt-default-8d8rq-vnc\": the object has been modified; please apply your changes to the latest version and try again" I0409 14:07:44.966563 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-libvirt-default-8d8rq-vnc-1" condition "Approved" to 2026-04-09 14:07:44.966549024 +0000 UTC m=+2234.149910269 I0409 14:07:44.983865 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-libvirt-default-8d8rq-vnc-1" condition "Ready" to 2026-04-09 14:07:44.983850938 +0000 UTC m=+2234.167212183 I0409 14:07:45.012600 1 conditions.go:192] Found status change for Certificate "libvirt-libvirt-default-8d8rq-vnc" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 14:07:45.012586737 +0000 UTC m=+2234.195947972 I0409 14:07:45.027398 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/libvirt-libvirt-default-8d8rq-vnc" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-libvirt-default-8d8rq-vnc\": the object has been modified; please apply your changes to the latest version and try again" I0409 14:07:45.107711 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/libvirt-libvirt-default-8d8rq-vnc" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-libvirt-default-8d8rq-vnc\": the object has been modified; please apply your changes to the latest version and try again" I0409 14:07:45.147542 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-libvirt-default-8d8rq-api-1" condition "Approved" to 2026-04-09 14:07:45.14752575 +0000 UTC m=+2234.330887005 I0409 14:07:45.162371 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-libvirt-default-8d8rq-api-1" condition "Ready" to 2026-04-09 14:07:45.162360348 +0000 UTC m=+2234.345721593 I0409 14:07:45.186575 1 conditions.go:192] Found status change for Certificate "libvirt-libvirt-default-8d8rq-api" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 14:07:45.186563713 +0000 UTC m=+2234.369924958 I0409 14:07:45.203423 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/libvirt-libvirt-default-8d8rq-api" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-libvirt-default-8d8rq-api\": the object has been modified; please apply your changes to the latest version and try again" I0409 14:07:45.204524 1 conditions.go:192] Found status change for Certificate "libvirt-libvirt-default-8d8rq-api" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 14:07:45.20451101 +0000 UTC m=+2234.387872275 I0409 14:07:45.217997 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/libvirt-libvirt-default-8d8rq-api" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-libvirt-default-8d8rq-api\": the object has been modified; please apply your changes to the latest version and try again" I0409 14:11:43.399035 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/heat-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 14:11:43.399110 1 conditions.go:203] Setting lastTransitionTime for Certificate "heat-api-certs" condition "Issuing" to 2026-04-09 14:11:43.399075456 +0000 UTC m=+2472.582436721 I0409 14:11:43.399166 1 conditions.go:203] Setting lastTransitionTime for Certificate "heat-api-certs" condition "Ready" to 2026-04-09 14:11:43.399126526 +0000 UTC m=+2472.582487791 I0409 14:11:43.419743 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/heat-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"heat-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 14:11:43.419872 1 conditions.go:203] Setting lastTransitionTime for Certificate "heat-api-certs" condition "Ready" to 2026-04-09 14:11:43.419860176 +0000 UTC m=+2472.603221451 I0409 14:11:43.683560 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/heat-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"heat-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 14:11:43.728093 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "heat-api-certs-1" condition "Approved" to 2026-04-09 14:11:43.72808224 +0000 UTC m=+2472.911443485 I0409 14:11:43.766986 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "heat-api-certs-1" condition "Ready" to 2026-04-09 14:11:43.76697698 +0000 UTC m=+2472.950338215 I0409 14:11:43.803549 1 conditions.go:192] Found status change for Certificate "heat-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 14:11:43.803541546 +0000 UTC m=+2472.986902791 I0409 14:11:43.823749 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/heat-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"heat-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 14:11:50.595593 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/heat-cfn-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 14:11:50.595613 1 conditions.go:203] Setting lastTransitionTime for Certificate "heat-cfn-certs" condition "Ready" to 2026-04-09 14:11:50.59559515 +0000 UTC m=+2479.778956395 I0409 14:11:50.595665 1 conditions.go:203] Setting lastTransitionTime for Certificate "heat-cfn-certs" condition "Issuing" to 2026-04-09 14:11:50.595654561 +0000 UTC m=+2479.779015826 I0409 14:11:50.608596 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/heat-cfn-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"heat-cfn-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 14:11:50.608704 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/heat-cfn-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 14:11:50.608731 1 conditions.go:203] Setting lastTransitionTime for Certificate "heat-cfn-certs" condition "Issuing" to 2026-04-09 14:11:50.608723676 +0000 UTC m=+2479.792084921 I0409 14:11:50.842950 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "heat-cfn-certs-1" condition "Approved" to 2026-04-09 14:11:50.842940532 +0000 UTC m=+2480.026301757 I0409 14:11:50.859191 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "heat-cfn-certs-1" condition "Ready" to 2026-04-09 14:11:50.859181346 +0000 UTC m=+2480.042542591 I0409 14:11:50.891114 1 conditions.go:192] Found status change for Certificate "heat-cfn-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 14:11:50.891101686 +0000 UTC m=+2480.074462951 I0409 14:11:50.912064 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/heat-cfn-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"heat-cfn-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 14:15:13.863413 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/octavia-client-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 14:15:13.863452 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-client-ca" condition "Ready" to 2026-04-09 14:15:13.86334233 +0000 UTC m=+2683.046703575 I0409 14:15:13.863532 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-client-ca" condition "Issuing" to 2026-04-09 14:15:13.863517903 +0000 UTC m=+2683.046879178 E0409 14:15:13.881408 1 setup.go:48] "error getting signing CA TLS certificate" err="secrets \"octavia-client-ca\" not found" logger="cert-manager.controller.setup" resource_name="octavia-client" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0409 14:15:13.881517 1 conditions.go:96] Setting lastTransitionTime for Issuer "octavia-client" condition "Ready" to 2026-04-09 14:15:13.881506011 +0000 UTC m=+2683.064867276 I0409 14:15:13.881581 1 sync.go:62] "Error initializing issuer: secrets \"octavia-client-ca\" not found" logger="cert-manager.controller" resource_name="octavia-client" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0409 14:15:13.881917 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/octavia-client-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-client-ca\": the object has been modified; please apply your changes to the latest version and try again" I0409 14:15:13.882163 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/octavia-client-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 14:15:13.882297 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-client-ca" condition "Issuing" to 2026-04-09 14:15:13.882194563 +0000 UTC m=+2683.065555838 E0409 14:15:13.894014 1 controller.go:162] "re-queuing item due to error processing" err="secrets \"octavia-client-ca\" not found" logger="cert-manager.controller" key="openstack/octavia-client" E0409 14:15:13.894415 1 setup.go:48] "error getting signing CA TLS certificate" err="secrets \"octavia-client-ca\" not found" logger="cert-manager.controller.setup" resource_name="octavia-client" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0409 14:15:13.894530 1 sync.go:62] "Error initializing issuer: secrets \"octavia-client-ca\" not found" logger="cert-manager.controller" resource_name="octavia-client" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0409 14:15:13.894585 1 controller.go:162] "re-queuing item due to error processing" err="secrets \"octavia-client-ca\" not found" logger="cert-manager.controller" key="openstack/octavia-client" I0409 14:15:13.928141 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-client-ca-1" condition "Approved" to 2026-04-09 14:15:13.928127905 +0000 UTC m=+2683.111489150 I0409 14:15:13.942727 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-client-ca-1" condition "Ready" to 2026-04-09 14:15:13.942715429 +0000 UTC m=+2683.126076674 I0409 14:15:13.967012 1 conditions.go:192] Found status change for Certificate "octavia-client-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 14:15:13.966999605 +0000 UTC m=+2683.150360850 I0409 14:15:13.978943 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/octavia-client-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-client-ca\": the object has been modified; please apply your changes to the latest version and try again" I0409 14:15:14.582236 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/octavia-server-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 14:15:14.582264 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-server-ca" condition "Issuing" to 2026-04-09 14:15:14.582257592 +0000 UTC m=+2683.765618827 I0409 14:15:14.582540 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-server-ca" condition "Ready" to 2026-04-09 14:15:14.582536717 +0000 UTC m=+2683.765897952 I0409 14:15:14.695306 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/octavia-server-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-server-ca\": the object has been modified; please apply your changes to the latest version and try again" I0409 14:15:14.695572 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/octavia-server-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 14:15:14.695763 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-server-ca" condition "Issuing" to 2026-04-09 14:15:14.695602759 +0000 UTC m=+2683.878964024 E0409 14:15:14.696704 1 setup.go:48] "error getting signing CA TLS certificate" err="secrets \"octavia-server-ca\" not found" logger="cert-manager.controller.setup" resource_name="octavia-server" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0409 14:15:14.696758 1 conditions.go:96] Setting lastTransitionTime for Issuer "octavia-server" condition "Ready" to 2026-04-09 14:15:14.696750021 +0000 UTC m=+2683.880111286 I0409 14:15:14.696944 1 sync.go:62] "Error initializing issuer: secrets \"octavia-server-ca\" not found" logger="cert-manager.controller" resource_name="octavia-server" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0409 14:15:14.741019 1 controller.go:162] "re-queuing item due to error processing" err="secrets \"octavia-server-ca\" not found" logger="cert-manager.controller" key="openstack/octavia-server" E0409 14:15:14.741146 1 setup.go:48] "error getting signing CA TLS certificate" err="secrets \"octavia-server-ca\" not found" logger="cert-manager.controller.setup" resource_name="octavia-server" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0409 14:15:14.741181 1 sync.go:62] "Error initializing issuer: secrets \"octavia-server-ca\" not found" logger="cert-manager.controller" resource_name="octavia-server" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0409 14:15:14.741219 1 controller.go:162] "re-queuing item due to error processing" err="secrets \"octavia-server-ca\" not found" logger="cert-manager.controller" key="openstack/octavia-server" I0409 14:15:14.928166 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-server-ca-1" condition "Approved" to 2026-04-09 14:15:14.928132773 +0000 UTC m=+2684.111494048 I0409 14:15:14.943419 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-server-ca-1" condition "Ready" to 2026-04-09 14:15:14.9433916 +0000 UTC m=+2684.126752835 I0409 14:15:14.974925 1 conditions.go:192] Found status change for Certificate "octavia-server-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 14:15:14.974908001 +0000 UTC m=+2684.158269266 I0409 14:15:14.987308 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/octavia-server-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-server-ca\": the object has been modified; please apply your changes to the latest version and try again" I0409 14:15:14.987562 1 conditions.go:192] Found status change for Certificate "octavia-server-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 14:15:14.987549519 +0000 UTC m=+2684.170910744 I0409 14:15:14.997067 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/octavia-server-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-server-ca\": the object has been modified; please apply your changes to the latest version and try again" I0409 14:15:14.999637 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/octavia-server-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-server-ca\": the object has been modified; please apply your changes to the latest version and try again" I0409 14:15:15.412849 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/octavia-client-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 14:15:15.412994 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-client-certs" condition "Ready" to 2026-04-09 14:15:15.412974492 +0000 UTC m=+2684.596335767 I0409 14:15:15.413101 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-client-certs" condition "Issuing" to 2026-04-09 14:15:15.413057665 +0000 UTC m=+2684.596418940 I0409 14:15:15.425089 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/octavia-client-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-client-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 14:15:15.425161 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-client-certs" condition "Ready" to 2026-04-09 14:15:15.425155161 +0000 UTC m=+2684.608516406 I0409 14:15:15.458573 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/octavia-client-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-client-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 14:15:15.483576 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-client-certs-1" condition "Approved" to 2026-04-09 14:15:15.483557657 +0000 UTC m=+2684.666918912 I0409 14:15:15.497735 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-client-certs-1" condition "Ready" to 2026-04-09 14:15:15.497718813 +0000 UTC m=+2684.681080058 I0409 14:15:18.894550 1 conditions.go:85] Found status change for Issuer "octavia-client" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 14:15:18.894532883 +0000 UTC m=+2688.077894148 I0409 14:15:18.905794 1 conditions.go:252] Found status change for CertificateRequest "octavia-client-certs-1" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 14:15:18.905780044 +0000 UTC m=+2688.089141289 I0409 14:15:18.926223 1 conditions.go:192] Found status change for Certificate "octavia-client-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 14:15:18.926208678 +0000 UTC m=+2688.109569923 I0409 14:15:18.944138 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/octavia-client-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-client-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 14:15:18.944556 1 conditions.go:192] Found status change for Certificate "octavia-client-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 14:15:18.944544282 +0000 UTC m=+2688.127905537 I0409 14:15:18.957371 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/octavia-client-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-client-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 14:15:19.742391 1 conditions.go:85] Found status change for Issuer "octavia-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 14:15:19.742377666 +0000 UTC m=+2688.925738911 I0409 14:18:07.493024 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/octavia-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 14:18:07.493150 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-api-certs" condition "Issuing" to 2026-04-09 14:18:07.493108537 +0000 UTC m=+2856.676469812 I0409 14:18:07.493862 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-api-certs" condition "Ready" to 2026-04-09 14:18:07.493851061 +0000 UTC m=+2856.677212346 I0409 14:18:07.507735 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/octavia-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 14:18:07.508039 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-api-certs" condition "Ready" to 2026-04-09 14:18:07.508017697 +0000 UTC m=+2856.691378942 I0409 14:18:07.656636 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/octavia-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 14:18:07.688897 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-api-certs-1" condition "Approved" to 2026-04-09 14:18:07.688882932 +0000 UTC m=+2856.872244187 I0409 14:18:07.701276 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-api-certs-1" condition "Ready" to 2026-04-09 14:18:07.701264004 +0000 UTC m=+2856.884625259 I0409 14:18:07.725727 1 conditions.go:192] Found status change for Certificate "octavia-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 14:18:07.725717733 +0000 UTC m=+2856.909078968 I0409 14:18:07.746631 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/octavia-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 14:18:59.004175 1 conditions.go:96] Setting lastTransitionTime for Issuer "test-selfsigned" condition "Ready" to 2026-04-09 14:18:59.004159091 +0000 UTC m=+2908.187520366 I0409 14:18:59.020989 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="cert-manager-test/selfsigned-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 14:18:59.021182 1 conditions.go:203] Setting lastTransitionTime for Certificate "selfsigned-cert" condition "Ready" to 2026-04-09 14:18:59.02115343 +0000 UTC m=+2908.204514705 I0409 14:18:59.021169 1 conditions.go:203] Setting lastTransitionTime for Certificate "selfsigned-cert" condition "Issuing" to 2026-04-09 14:18:59.0211566 +0000 UTC m=+2908.204517875 I0409 14:18:59.031394 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="cert-manager-test/selfsigned-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"selfsigned-cert\": the object has been modified; please apply your changes to the latest version and try again" I0409 14:18:59.031499 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="cert-manager-test/selfsigned-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 14:18:59.031538 1 conditions.go:203] Setting lastTransitionTime for Certificate "selfsigned-cert" condition "Issuing" to 2026-04-09 14:18:59.031531455 +0000 UTC m=+2908.214892730 E0409 14:18:59.049811 1 controller.go:134] "issuer in work queue no longer exists" err="issuer.cert-manager.io \"test-selfsigned\" not found" logger="cert-manager.controller" I0409 14:18:59.103488 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-selfsigned-issuer" condition "Ready" to 2026-04-09 14:18:59.103460785 +0000 UTC m=+2908.286822060 I0409 14:18:59.123434 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Ready" to 2026-04-09 14:18:59.123415599 +0000 UTC m=+2908.306776844 I0409 14:18:59.123513 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="capi-system/capi-serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 14:18:59.123560 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Issuing" to 2026-04-09 14:18:59.123550243 +0000 UTC m=+2908.306911488 I0409 14:18:59.147811 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capi-system/capi-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0409 14:18:59.147933 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="capi-system/capi-serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 14:18:59.147974 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Issuing" to 2026-04-09 14:18:59.14796499 +0000 UTC m=+2908.331326225 E0409 14:18:59.290585 1 controller.go:162] "re-queuing item due to error processing" err="secrets \"selfsigned-cert-\" is forbidden: unable to create new content in namespace cert-manager-test because it is being terminated" logger="cert-manager.controller" key="cert-manager-test/selfsigned-cert" I0409 14:18:59.387472 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capi-system/capi-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0409 14:18:59.411877 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-serving-cert-1" condition "Approved" to 2026-04-09 14:18:59.411865834 +0000 UTC m=+2908.595227069 I0409 14:18:59.434124 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-serving-cert-1" condition "Ready" to 2026-04-09 14:18:59.434108691 +0000 UTC m=+2908.617469956 I0409 14:18:59.474587 1 conditions.go:192] Found status change for Certificate "capi-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 14:18:59.474576361 +0000 UTC m=+2908.657937596 I0409 14:18:59.496137 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capi-system/capi-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0409 14:18:59.498230 1 conditions.go:192] Found status change for Certificate "capi-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 14:18:59.498223915 +0000 UTC m=+2908.681585150 I0409 14:18:59.514306 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capi-system/capi-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0409 14:18:59.519742 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capi-system/capi-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0409 14:18:59.890698 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-kubeadm-bootstrap-selfsigned-issuer" condition "Ready" to 2026-04-09 14:18:59.890676152 +0000 UTC m=+2909.074037397 I0409 14:18:59.911633 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready" to 2026-04-09 14:18:59.911612125 +0000 UTC m=+2909.094973390 I0409 14:18:59.911908 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 14:18:59.911967 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Issuing" to 2026-04-09 14:18:59.911956592 +0000 UTC m=+2909.095317857 I0409 14:18:59.924382 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0409 14:18:59.924477 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 14:18:59.924513 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Issuing" to 2026-04-09 14:18:59.924503267 +0000 UTC m=+2909.107864522 I0409 14:19:00.150256 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-bootstrap-serving-cert-1" condition "Approved" to 2026-04-09 14:19:00.150245635 +0000 UTC m=+2909.333606860 I0409 14:19:00.162579 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-bootstrap-serving-cert-1" condition "Ready" to 2026-04-09 14:19:00.162571216 +0000 UTC m=+2909.345932441 I0409 14:19:00.191914 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 14:19:00.191899467 +0000 UTC m=+2909.375260732 I0409 14:19:00.212866 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0409 14:19:00.349729 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-kubeadm-control-plane-selfsigned-issuer" condition "Ready" to 2026-04-09 14:19:00.349697159 +0000 UTC m=+2909.533058404 I0409 14:19:00.368781 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready" to 2026-04-09 14:19:00.368718016 +0000 UTC m=+2909.552079261 I0409 14:19:00.368846 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 14:19:00.368885 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Issuing" to 2026-04-09 14:19:00.368876929 +0000 UTC m=+2909.552238174 I0409 14:19:00.381993 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0409 14:19:00.382160 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready" to 2026-04-09 14:19:00.382147507 +0000 UTC m=+2909.565508752 I0409 14:19:00.523531 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0409 14:19:00.596507 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-control-plane-serving-cert-1" condition "Approved" to 2026-04-09 14:19:00.596494732 +0000 UTC m=+2909.779855967 I0409 14:19:00.666693 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-control-plane-serving-cert-1" condition "Ready" to 2026-04-09 14:19:00.666677899 +0000 UTC m=+2909.850039134 I0409 14:19:00.722274 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 14:19:00.722263412 +0000 UTC m=+2909.905624657 I0409 14:19:00.829152 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0409 14:19:00.830050 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 14:19:00.830041215 +0000 UTC m=+2910.013402460 I0409 14:19:00.837780 1 conditions.go:96] Setting lastTransitionTime for Issuer "capo-selfsigned-issuer" condition "Ready" to 2026-04-09 14:19:00.837771891 +0000 UTC m=+2910.021133126 I0409 14:19:00.855871 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="capo-system/capo-serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 14:19:00.855915 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Issuing" to 2026-04-09 14:19:00.855904831 +0000 UTC m=+2910.039266106 I0409 14:19:00.856148 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Ready" to 2026-04-09 14:19:00.856142596 +0000 UTC m=+2910.039503871 I0409 14:19:01.117976 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capo-system/capo-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0409 14:19:01.118089 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Ready" to 2026-04-09 14:19:01.118079883 +0000 UTC m=+2910.301441118 I0409 14:19:01.159245 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0409 14:19:01.428605 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capo-system/capo-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0409 14:19:01.569408 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capo-serving-cert-1" condition "Approved" to 2026-04-09 14:19:01.569389064 +0000 UTC m=+2910.752750309 I0409 14:19:01.943351 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capo-serving-cert-1" condition "Ready" to 2026-04-09 14:19:01.943331687 +0000 UTC m=+2911.126692952 I0409 14:19:02.166136 1 conditions.go:192] Found status change for Certificate "capo-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 14:19:02.16611939 +0000 UTC m=+2911.349480635 I0409 14:19:02.262628 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capo-system/capo-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0409 14:22:11.322041 1 conditions.go:203] Setting lastTransitionTime for Certificate "magnum-api-certs" condition "Ready" to 2026-04-09 14:22:11.322018347 +0000 UTC m=+3100.505379582 I0409 14:22:11.322688 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/magnum-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 14:22:11.322750 1 conditions.go:203] Setting lastTransitionTime for Certificate "magnum-api-certs" condition "Issuing" to 2026-04-09 14:22:11.322739921 +0000 UTC m=+3100.506101196 I0409 14:22:11.336073 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/magnum-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"magnum-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 14:22:11.336556 1 conditions.go:203] Setting lastTransitionTime for Certificate "magnum-api-certs" condition "Ready" to 2026-04-09 14:22:11.336531119 +0000 UTC m=+3100.519892364 I0409 14:22:11.597926 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/magnum-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"magnum-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 14:22:11.644586 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "magnum-api-certs-1" condition "Approved" to 2026-04-09 14:22:11.644568462 +0000 UTC m=+3100.827929707 I0409 14:22:11.671350 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "magnum-api-certs-1" condition "Ready" to 2026-04-09 14:22:11.671330625 +0000 UTC m=+3100.854691900 I0409 14:22:11.710530 1 conditions.go:192] Found status change for Certificate "magnum-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 14:22:11.71051352 +0000 UTC m=+3100.893874765 I0409 14:22:11.732627 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/magnum-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"magnum-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 14:22:11.733224 1 conditions.go:192] Found status change for Certificate "magnum-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 14:22:11.733214917 +0000 UTC m=+3100.916576152 I0409 14:22:11.755096 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/magnum-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"magnum-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 14:22:19.264308 1 conditions.go:203] Setting lastTransitionTime for Certificate "magnum-registry-certs" condition "Ready" to 2026-04-09 14:22:19.264296477 +0000 UTC m=+3108.447657722 I0409 14:22:19.264460 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/magnum-registry-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 14:22:19.264598 1 conditions.go:203] Setting lastTransitionTime for Certificate "magnum-registry-certs" condition "Issuing" to 2026-04-09 14:22:19.264586042 +0000 UTC m=+3108.447947327 I0409 14:22:19.291704 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/magnum-registry-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"magnum-registry-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 14:22:19.291797 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/magnum-registry-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 14:22:19.291817 1 conditions.go:203] Setting lastTransitionTime for Certificate "magnum-registry-certs" condition "Issuing" to 2026-04-09 14:22:19.291810573 +0000 UTC m=+3108.475171818 I0409 14:22:19.433857 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/magnum-registry-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"magnum-registry-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 14:22:19.452274 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "magnum-registry-certs-1" condition "Approved" to 2026-04-09 14:22:19.452257175 +0000 UTC m=+3108.635618420 I0409 14:22:19.469474 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "magnum-registry-certs-1" condition "Ready" to 2026-04-09 14:22:19.469463948 +0000 UTC m=+3108.652825193 I0409 14:22:19.496180 1 conditions.go:192] Found status change for Certificate "magnum-registry-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 14:22:19.496163879 +0000 UTC m=+3108.679525114 I0409 14:22:19.518341 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/magnum-registry-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"magnum-registry-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 14:22:19.523110 1 conditions.go:192] Found status change for Certificate "magnum-registry-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 14:22:19.523096934 +0000 UTC m=+3108.706458179 I0409 14:22:19.529565 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/magnum-registry-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"magnum-registry-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 14:22:19.542935 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/magnum-registry-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"magnum-registry-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 14:22:19.543490 1 conditions.go:192] Found status change for Certificate "magnum-registry-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 14:22:19.543480507 +0000 UTC m=+3108.726841732 I0409 14:28:01.002655 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/manila-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 14:28:01.002726 1 conditions.go:203] Setting lastTransitionTime for Certificate "manila-api-certs" condition "Issuing" to 2026-04-09 14:28:01.002707101 +0000 UTC m=+3450.186068366 I0409 14:28:01.002918 1 conditions.go:203] Setting lastTransitionTime for Certificate "manila-api-certs" condition "Ready" to 2026-04-09 14:28:01.002904394 +0000 UTC m=+3450.186265639 I0409 14:28:01.015124 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/manila-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"manila-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 14:28:01.015261 1 conditions.go:203] Setting lastTransitionTime for Certificate "manila-api-certs" condition "Ready" to 2026-04-09 14:28:01.015253247 +0000 UTC m=+3450.198614502 I0409 14:28:01.153702 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/manila-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"manila-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 14:28:01.190111 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "manila-api-certs-1" condition "Approved" to 2026-04-09 14:28:01.19010026 +0000 UTC m=+3450.373461495 I0409 14:28:01.205372 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "manila-api-certs-1" condition "Ready" to 2026-04-09 14:28:01.205360588 +0000 UTC m=+3450.388721853 I0409 14:28:01.232734 1 conditions.go:192] Found status change for Certificate "manila-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 14:28:01.232719513 +0000 UTC m=+3450.416080788 I0409 14:28:01.248084 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/manila-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"manila-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 14:28:01.248615 1 conditions.go:192] Found status change for Certificate "manila-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 14:28:01.248607992 +0000 UTC m=+3450.431969237 I0409 14:28:01.256264 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/manila-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"manila-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 14:28:01.265852 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/manila-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"manila-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 14:28:40.826123 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-04-09 14:28:40.826112658 +0000 UTC m=+3490.009473903 I0409 14:28:40.826301 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 14:28:40.826325 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-04-09 14:28:40.826321462 +0000 UTC m=+3490.009682697 I0409 14:28:40.838783 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 14:28:40.838948 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-04-09 14:28:40.83893831 +0000 UTC m=+3490.022299565 I0409 14:28:41.233731 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 14:28:41.268806 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-1" condition "Approved" to 2026-04-09 14:28:41.268791965 +0000 UTC m=+3490.452153210 I0409 14:28:41.282725 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-1" condition "Ready" to 2026-04-09 14:28:41.282712008 +0000 UTC m=+3490.466073233 I0409 14:28:41.307217 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 14:28:41.307204959 +0000 UTC m=+3490.490566194 I0409 14:28:41.322806 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 14:28:41.371966 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again"