I0227 18:23:19.730927 1 start.go:75] "cert-manager: starting controller" version="v1.12.10" git-commit="4131d77fe377e78a6fa562af6bdbd31532ddb1ad" I0227 18:23:19.731096 1 controller.go:262] "cert-manager/controller/build-context: configured acme dns01 nameservers" nameservers=["10.96.0.10:53"] W0227 18:23:19.731180 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0227 18:23:19.738064 1 controller.go:82] "cert-manager/controller: enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" I0227 18:23:19.738529 1 controller.go:103] "cert-manager/controller: starting metrics server" address="[::]:9402" I0227 18:23:19.738540 1 controller.go:156] "cert-manager/controller: starting leader election" I0227 18:23:19.738640 1 controller.go:149] "cert-manager/controller: starting healthz server" address="[::]:9403" I0227 18:23:19.741039 1 leaderelection.go:245] attempting to acquire leader lease cert-manager/cert-manager-controller... I0227 18:23:19.756776 1 leaderelection.go:255] successfully acquired lease cert-manager/cert-manager-controller I0227 18:23:19.757028 1 controller.go:203] "cert-manager/controller: not starting controller as it's disabled" controller="certificatesigningrequests-issuer-acme" I0227 18:23:19.761784 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-issuing" I0227 18:23:19.764357 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-key-manager" I0227 18:23:19.769709 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-metrics" I0227 18:23:19.772752 1 controller.go:226] "cert-manager/controller: starting controller" controller="orders" I0227 18:23:19.775211 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificaterequests-issuer-acme" I0227 18:23:19.777750 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificaterequests-issuer-vault" I0227 18:23:19.780437 1 controller.go:203] "cert-manager/controller: not starting controller as it's disabled" controller="certificatesigningrequests-issuer-vault" I0227 18:23:19.780516 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificaterequests-issuer-venafi" I0227 18:23:19.783478 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificaterequests-approver" I0227 18:23:19.785807 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-revision-manager" I0227 18:23:19.791406 1 controller.go:203] "cert-manager/controller: not starting controller as it's disabled" controller="certificatesigningrequests-issuer-venafi" I0227 18:23:19.791544 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificaterequests-issuer-selfsigned" I0227 18:23:19.795232 1 controller.go:203] "cert-manager/controller: not starting controller as it's disabled" controller="gateway-shim" I0227 18:23:19.795360 1 controller.go:226] "cert-manager/controller: starting controller" controller="challenges" I0227 18:23:19.798539 1 controller.go:226] "cert-manager/controller: starting controller" controller="ingress-shim" I0227 18:23:19.800385 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-readiness" I0227 18:23:19.802167 1 controller.go:203] "cert-manager/controller: not starting controller as it's disabled" controller="certificatesigningrequests-issuer-ca" I0227 18:23:19.802187 1 controller.go:203] "cert-manager/controller: not starting controller as it's disabled" controller="certificatesigningrequests-issuer-selfsigned" I0227 18:23:19.802255 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-trigger" I0227 18:23:19.804168 1 controller.go:226] "cert-manager/controller: starting controller" controller="clusterissuers" I0227 18:23:19.806175 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-request-manager" I0227 18:23:19.807838 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificaterequests-issuer-ca" I0227 18:23:19.809501 1 controller.go:226] "cert-manager/controller: starting controller" controller="issuers" I0227 18:23:35.521478 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-02-27 18:23:35.521436407 +0000 UTC m=+15.827564462 I0227 18:23:36.271152 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-02-27 18:23:36.271121599 +0000 UTC m=+16.577249654 I0227 18:23:36.271304 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0227 18:23:36.271557 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-02-27 18:23:36.271542729 +0000 UTC m=+16.577670794 I0227 18:23:36.289961 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:23:36.290092 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-02-27 18:23:36.290070675 +0000 UTC m=+16.596198740 E0227 18:23:36.290130 1 setup.go:48] "cert-manager/clusterissuers/setup: error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0227 18:23:36.290267 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-02-27 18:23:36.290255499 +0000 UTC m=+16.596383564 E0227 18:23:36.290326 1 sync.go:62] "cert-manager/clusterissuers: error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0227 18:23:36.302636 1 controller.go:167] "cert-manager/clusterissuers: re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" key="atmosphere" E0227 18:23:36.302847 1 setup.go:48] "cert-manager/clusterissuers/setup: error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0227 18:23:36.302951 1 sync.go:62] "cert-manager/clusterissuers: error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0227 18:23:36.303028 1 controller.go:167] "cert-manager/clusterissuers: re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" key="atmosphere" I0227 18:23:36.313926 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:23:36.336283 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-6r27x" condition "Approved" to 2026-02-27 18:23:36.336259006 +0000 UTC m=+16.642387051 I0227 18:23:36.349807 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-6r27x" condition "Ready" to 2026-02-27 18:23:36.349785557 +0000 UTC m=+16.655913602 I0227 18:23:36.375177 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-27 18:23:36.375156471 +0000 UTC m=+16.681284536 I0227 18:23:36.394194 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:23:36.394473 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-27 18:23:36.394464565 +0000 UTC m=+16.700592600 I0227 18:23:36.412351 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:23:41.304009 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-27 18:23:41.303989581 +0000 UTC m=+21.610117646 I0227 18:24:02.426403 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-02-27 18:24:02.426368524 +0000 UTC m=+42.732496609 I0227 18:24:02.426454 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0227 18:24:02.426493 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-02-27 18:24:02.426484066 +0000 UTC m=+42.732612121 I0227 18:24:02.438509 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-02-27 18:24:02.438493252 +0000 UTC m=+42.744621287 I0227 18:24:02.448688 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:24:02.448769 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-02-27 18:24:02.448760618 +0000 UTC m=+42.754888653 I0227 18:24:02.627563 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:24:02.660957 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-2s6ks" condition "Approved" to 2026-02-27 18:24:02.660936596 +0000 UTC m=+42.967064661 I0227 18:24:02.690105 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-2s6ks" condition "Ready" to 2026-02-27 18:24:02.690088696 +0000 UTC m=+42.996216731 I0227 18:24:02.728377 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-27 18:24:02.728361946 +0000 UTC m=+43.034490001 I0227 18:24:02.753829 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:24:02.754196 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-27 18:24:02.75419071 +0000 UTC m=+43.060318735 I0227 18:24:02.764440 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:24:02.778265 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:26:41.887259 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-169.nip.io-tls" condition "Ready" to 2026-02-27 18:26:41.887234488 +0000 UTC m=+202.193362553 I0227 18:26:41.887796 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="auth-system/keycloak.199-204-45-169.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0227 18:26:41.887824 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-169.nip.io-tls" condition "Issuing" to 2026-02-27 18:26:41.887817781 +0000 UTC m=+202.193945836 I0227 18:26:41.913168 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="auth-system/keycloak.199-204-45-169.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-169.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:26:41.913251 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="auth-system/keycloak.199-204-45-169.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0227 18:26:41.913281 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-169.nip.io-tls" condition "Issuing" to 2026-02-27 18:26:41.913262073 +0000 UTC m=+202.219390108 I0227 18:26:42.120048 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="auth-system/keycloak.199-204-45-169.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-169.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:26:42.130152 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-169.nip.io-tls-ws86n" condition "Approved" to 2026-02-27 18:26:42.130136748 +0000 UTC m=+202.436264783 I0227 18:26:42.172534 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-169.nip.io-tls-ws86n" condition "Ready" to 2026-02-27 18:26:42.172510854 +0000 UTC m=+202.478638929 I0227 18:26:42.202909 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-169.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-27 18:26:42.202887981 +0000 UTC m=+202.509016046 I0227 18:26:42.235080 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="auth-system/keycloak.199-204-45-169.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-169.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:26:42.235743 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-169.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-27 18:26:42.235734085 +0000 UTC m=+202.541862120 I0227 18:26:42.257384 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="auth-system/keycloak.199-204-45-169.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-169.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:26:42.257885 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-169.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-27 18:26:42.25787779 +0000 UTC m=+202.564005825 I0227 18:27:43.826471 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-02-27 18:27:43.826447343 +0000 UTC m=+264.132575378 I0227 18:27:43.826569 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0227 18:27:43.826611 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-02-27 18:27:43.826602747 +0000 UTC m=+264.132730782 I0227 18:27:43.839637 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" E0227 18:27:43.839709 1 setup.go:48] "cert-manager/clusterissuers/setup: error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0227 18:27:43.839865 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-02-27 18:27:43.839857545 +0000 UTC m=+264.145985610 I0227 18:27:43.839748 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0227 18:27:43.839951 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-02-27 18:27:43.839932977 +0000 UTC m=+264.146061012 E0227 18:27:43.840008 1 sync.go:62] "cert-manager/clusterissuers: error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0227 18:27:43.852853 1 controller.go:167] "cert-manager/clusterissuers: re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" key="kube-prometheus-stack" E0227 18:27:43.853181 1 setup.go:48] "cert-manager/clusterissuers/setup: error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0227 18:27:43.853285 1 sync.go:62] "cert-manager/clusterissuers: error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0227 18:27:43.853443 1 controller.go:167] "cert-manager/clusterissuers: re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" key="kube-prometheus-stack" I0227 18:27:43.878120 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:27:43.883416 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-mwpsl" condition "Approved" to 2026-02-27 18:27:43.883388468 +0000 UTC m=+264.189516513 I0227 18:27:43.896148 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-mwpsl" condition "Ready" to 2026-02-27 18:27:43.896131565 +0000 UTC m=+264.202259600 I0227 18:27:43.913368 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-27 18:27:43.913324805 +0000 UTC m=+264.219452860 I0227 18:27:43.935325 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:27:48.854006 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-27 18:27:48.853993697 +0000 UTC m=+269.160121742 I0227 18:28:26.098629 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0227 18:28:26.098682 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-02-27 18:28:26.098675373 +0000 UTC m=+306.404803408 I0227 18:28:26.098664 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-02-27 18:28:26.098639612 +0000 UTC m=+306.404767647 I0227 18:28:26.098912 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0227 18:28:26.098925 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-02-27 18:28:26.098921709 +0000 UTC m=+306.405049734 I0227 18:28:26.099100 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-02-27 18:28:26.099078792 +0000 UTC m=+306.405206817 I0227 18:28:26.105025 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-02-27 18:28:26.105013931 +0000 UTC m=+306.411141966 I0227 18:28:26.105345 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0227 18:28:26.105380 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-02-27 18:28:26.105376799 +0000 UTC m=+306.411504834 I0227 18:28:26.127737 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:28:26.127804 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0227 18:28:26.127821 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-02-27 18:28:26.127816671 +0000 UTC m=+306.433944696 I0227 18:28:26.134686 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:28:26.134731 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-02-27 18:28:26.134726362 +0000 UTC m=+306.440854377 I0227 18:28:26.135769 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:28:26.135997 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0227 18:28:26.136023 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-02-27 18:28:26.136020172 +0000 UTC m=+306.442148197 I0227 18:28:26.322137 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-xt6pk" condition "Approved" to 2026-02-27 18:28:26.322113863 +0000 UTC m=+306.628241918 I0227 18:28:26.323458 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:28:26.341159 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-xt6pk" condition "Ready" to 2026-02-27 18:28:26.341147896 +0000 UTC m=+306.647275921 I0227 18:28:26.351320 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:28:26.413926 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-98ws4" condition "Approved" to 2026-02-27 18:28:26.413915969 +0000 UTC m=+306.720043994 I0227 18:28:26.428493 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:28:26.434914 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-98ws4" condition "Ready" to 2026-02-27 18:28:26.434900178 +0000 UTC m=+306.741028213 I0227 18:28:26.464412 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0227 18:28:26.464504 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-02-27 18:28:26.464495706 +0000 UTC m=+306.770623751 I0227 18:28:26.474093 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-27 18:28:26.47408231 +0000 UTC m=+306.780210335 I0227 18:28:26.478469 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-27 18:28:26.478458421 +0000 UTC m=+306.784586436 I0227 18:28:26.490482 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:28:26.491020 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-27 18:28:26.491010974 +0000 UTC m=+306.797139019 I0227 18:28:26.542153 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:28:26.648637 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:28:26.997558 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-bltm5" condition "Approved" to 2026-02-27 18:28:26.997536993 +0000 UTC m=+307.303665028 I0227 18:28:27.353331 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-bltm5" condition "Ready" to 2026-02-27 18:28:27.353315723 +0000 UTC m=+307.659443788 I0227 18:28:27.598861 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-dn5qn" condition "Approved" to 2026-02-27 18:28:27.598849557 +0000 UTC m=+307.904977592 I0227 18:28:28.001199 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-dn5qn" condition "Ready" to 2026-02-27 18:28:28.001186411 +0000 UTC m=+308.307314456 I0227 18:28:28.589412 1 issuing_controller.go:324] "cert-manager/certificates-issuing: next private key does not match CSR public key, waiting for requestmanager controller" key="monitoring/prometheus-tls" resource_name="prometheus-tls" resource_namespace="monitoring" resource_kind="Certificate" resource_version="v1" resource_name="prometheus-tls-dn5qn" resource_namespace="monitoring" resource_kind="CertificateRequest" resource_version="v1" resource_name="prometheus-tls-k87wg" resource_namespace="monitoring" resource_kind="Secret" resource_version="v1" I0227 18:28:28.590134 1 issuing_controller.go:324] "cert-manager/certificates-issuing: next private key does not match CSR public key, waiting for requestmanager controller" key="monitoring/prometheus-tls" resource_name="prometheus-tls" resource_namespace="monitoring" resource_kind="Certificate" resource_version="v1" resource_name="prometheus-tls-dn5qn" resource_namespace="monitoring" resource_kind="CertificateRequest" resource_version="v1" resource_name="prometheus-tls-k87wg" resource_namespace="monitoring" resource_kind="Secret" resource_version="v1" I0227 18:28:28.643081 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:28:29.050434 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:28:29.051023 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-hm7jq" condition "Approved" to 2026-02-27 18:28:29.051007233 +0000 UTC m=+309.357135288 I0227 18:28:29.252674 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-hm7jq" condition "Ready" to 2026-02-27 18:28:29.252658285 +0000 UTC m=+309.558786350 I0227 18:28:29.593815 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-27 18:28:29.593797364 +0000 UTC m=+309.899925449 I0227 18:28:29.692321 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:28:29.693036 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-27 18:28:29.693024703 +0000 UTC m=+309.999152758 I0227 18:28:29.944206 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:28:29.994136 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:28:38.469537 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-zlht2-tls" condition "Ready" to 2026-02-27 18:28:38.46951943 +0000 UTC m=+318.775647455 I0227 18:28:38.469730 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-zlht2-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0227 18:28:38.469837 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-zlht2-tls" condition "Issuing" to 2026-02-27 18:28:38.469826088 +0000 UTC m=+318.775954153 I0227 18:28:38.485925 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-zlht2-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-zlht2-tls\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:28:38.486047 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-zlht2-tls" condition "Ready" to 2026-02-27 18:28:38.486023333 +0000 UTC m=+318.792151388 I0227 18:28:38.759824 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-zlht2-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-zlht2-tls\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:28:38.795718 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-zlht2-dm49f" condition "Approved" to 2026-02-27 18:28:38.795700618 +0000 UTC m=+319.101828653 I0227 18:28:38.816237 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-zlht2-dm49f" condition "Ready" to 2026-02-27 18:28:38.816225295 +0000 UTC m=+319.122353320 I0227 18:28:38.852186 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-zlht2-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-27 18:28:38.852168739 +0000 UTC m=+319.158296774 I0227 18:28:38.873471 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-zlht2-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-zlht2-tls\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:28:38.940797 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-zlht2-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-zlht2-tls\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:29:14.000137 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0227 18:29:14.000181 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-02-27 18:29:14.000172413 +0000 UTC m=+354.306300448 I0227 18:29:14.000514 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-02-27 18:29:14.00049182 +0000 UTC m=+354.306619845 I0227 18:29:14.018888 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:29:14.019055 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0227 18:29:14.019102 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-02-27 18:29:14.019092862 +0000 UTC m=+354.325220897 I0227 18:29:14.317263 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-hx679" condition "Approved" to 2026-02-27 18:29:14.31724376 +0000 UTC m=+354.623371795 I0227 18:29:14.334561 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-hx679" condition "Ready" to 2026-02-27 18:29:14.334554051 +0000 UTC m=+354.640682076 I0227 18:29:14.361367 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-27 18:29:14.361355693 +0000 UTC m=+354.667483718 I0227 18:29:14.382032 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:29:14.382425 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-27 18:29:14.382418272 +0000 UTC m=+354.688546297 I0227 18:29:14.402564 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:32:40.544086 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-02-27 18:32:40.544064318 +0000 UTC m=+560.850192453 I0227 18:32:40.544149 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0227 18:32:40.544236 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-02-27 18:32:40.544225431 +0000 UTC m=+560.850353486 I0227 18:32:40.561630 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:32:40.561713 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0227 18:32:40.561734 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-02-27 18:32:40.561727287 +0000 UTC m=+560.867855322 I0227 18:32:40.823135 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:32:40.833866 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-7j9bl" condition "Approved" to 2026-02-27 18:32:40.833856446 +0000 UTC m=+561.139984481 I0227 18:32:40.850996 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-7j9bl" condition "Ready" to 2026-02-27 18:32:40.850987192 +0000 UTC m=+561.157115217 I0227 18:32:40.878326 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-27 18:32:40.878315886 +0000 UTC m=+561.184443911 I0227 18:32:40.901518 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:35:01.547404 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-02-27 18:35:01.547344683 +0000 UTC m=+701.853472738 I0227 18:35:01.547451 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0227 18:35:01.547509 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-02-27 18:35:01.547500977 +0000 UTC m=+701.853629002 I0227 18:35:01.562802 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:35:01.562898 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-02-27 18:35:01.562879893 +0000 UTC m=+701.869007928 I0227 18:35:01.881686 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:35:01.911856 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-zk9gf" condition "Approved" to 2026-02-27 18:35:01.911837214 +0000 UTC m=+702.217965249 I0227 18:35:01.928062 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-zk9gf" condition "Ready" to 2026-02-27 18:35:01.92804876 +0000 UTC m=+702.234176785 I0227 18:35:01.962087 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-27 18:35:01.962065158 +0000 UTC m=+702.268193223 I0227 18:35:01.984484 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:35:02.035185 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:36:08.618349 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-02-27 18:36:08.61833047 +0000 UTC m=+768.924458485 I0227 18:36:08.618516 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0227 18:36:08.618605 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-02-27 18:36:08.618593876 +0000 UTC m=+768.924721941 I0227 18:36:08.641883 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:36:08.641975 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0227 18:36:08.642007 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-02-27 18:36:08.642000119 +0000 UTC m=+768.948128154 I0227 18:36:08.961532 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:36:08.977502 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-phhdp" condition "Approved" to 2026-02-27 18:36:08.977475547 +0000 UTC m=+769.283603612 I0227 18:36:08.998973 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-phhdp" condition "Ready" to 2026-02-27 18:36:08.998946715 +0000 UTC m=+769.305074750 I0227 18:36:09.033284 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-27 18:36:09.033267071 +0000 UTC m=+769.339395106 I0227 18:36:09.051211 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:36:09.051771 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-27 18:36:09.051764609 +0000 UTC m=+769.357892644 I0227 18:36:09.069765 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:36:09.070274 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-27 18:36:09.070266018 +0000 UTC m=+769.376394053 I0227 18:36:09.076827 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:39:13.782320 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0227 18:39:13.782380 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-02-27 18:39:13.782375297 +0000 UTC m=+954.088503322 I0227 18:39:13.782314 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-02-27 18:39:13.782292835 +0000 UTC m=+954.088420900 I0227 18:39:13.799887 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:39:13.799958 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-02-27 18:39:13.799950634 +0000 UTC m=+954.106078679 I0227 18:39:13.892091 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:39:13.926946 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-l5hms" condition "Approved" to 2026-02-27 18:39:13.92693349 +0000 UTC m=+954.233061525 I0227 18:39:13.950368 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-l5hms" condition "Ready" to 2026-02-27 18:39:13.950355693 +0000 UTC m=+954.256483728 I0227 18:39:13.988113 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-27 18:39:13.988088688 +0000 UTC m=+954.294216763 I0227 18:39:14.008523 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:45:33.823457 1 conditions.go:203] Setting lastTransitionTime for Certificate "cinder-api-certs" condition "Ready" to 2026-02-27 18:45:33.823436594 +0000 UTC m=+1334.129564629 I0227 18:45:33.823472 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/cinder-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0227 18:45:33.823552 1 conditions.go:203] Setting lastTransitionTime for Certificate "cinder-api-certs" condition "Issuing" to 2026-02-27 18:45:33.823543257 +0000 UTC m=+1334.129671322 I0227 18:45:33.842573 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/cinder-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"cinder-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:45:33.842666 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/cinder-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0227 18:45:33.842696 1 conditions.go:203] Setting lastTransitionTime for Certificate "cinder-api-certs" condition "Issuing" to 2026-02-27 18:45:33.842689561 +0000 UTC m=+1334.148817596 I0227 18:45:34.037104 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "cinder-api-certs-ttkxv" condition "Approved" to 2026-02-27 18:45:34.037084118 +0000 UTC m=+1334.343212153 I0227 18:45:34.057684 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "cinder-api-certs-ttkxv" condition "Ready" to 2026-02-27 18:45:34.057668515 +0000 UTC m=+1334.363796570 I0227 18:45:34.084491 1 conditions.go:192] Found status change for Certificate "cinder-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-27 18:45:34.084474877 +0000 UTC m=+1334.390602912 I0227 18:45:34.104290 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/cinder-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"cinder-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:45:34.104961 1 conditions.go:192] Found status change for Certificate "cinder-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-27 18:45:34.104954102 +0000 UTC m=+1334.411082137 I0227 18:45:34.120743 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="openstack/cinder-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"cinder-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:45:34.121481 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/cinder-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"cinder-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:46:59.816180 1 conditions.go:203] Setting lastTransitionTime for Certificate "placement-api-certs" condition "Ready" to 2026-02-27 18:46:59.816167931 +0000 UTC m=+1420.122295966 I0227 18:46:59.816432 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/placement-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0227 18:46:59.816453 1 conditions.go:203] Setting lastTransitionTime for Certificate "placement-api-certs" condition "Issuing" to 2026-02-27 18:46:59.816450297 +0000 UTC m=+1420.122578332 I0227 18:46:59.835847 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/placement-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"placement-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:46:59.835893 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/placement-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0227 18:46:59.835903 1 conditions.go:203] Setting lastTransitionTime for Certificate "placement-api-certs" condition "Issuing" to 2026-02-27 18:46:59.835898788 +0000 UTC m=+1420.142026813 I0227 18:47:00.273058 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/placement-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"placement-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:47:00.279179 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "placement-api-certs-cqcmx" condition "Approved" to 2026-02-27 18:47:00.279167436 +0000 UTC m=+1420.585295471 I0227 18:47:00.293890 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "placement-api-certs-cqcmx" condition "Ready" to 2026-02-27 18:47:00.293878017 +0000 UTC m=+1420.600006042 I0227 18:47:00.324784 1 conditions.go:192] Found status change for Certificate "placement-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-27 18:47:00.324768773 +0000 UTC m=+1420.630896818 I0227 18:47:00.347026 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/placement-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"placement-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:47:00.347535 1 conditions.go:192] Found status change for Certificate "placement-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-27 18:47:00.347527761 +0000 UTC m=+1420.653655796 I0227 18:47:00.367309 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/placement-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"placement-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:47:00.367935 1 conditions.go:192] Found status change for Certificate "placement-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-27 18:47:00.367926694 +0000 UTC m=+1420.674054729 I0227 18:47:50.817240 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-vnc-ca" condition "Ready" to 2026-02-27 18:47:50.817195732 +0000 UTC m=+1471.123323787 I0227 18:47:50.817352 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/libvirt-vnc-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0227 18:47:50.817403 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-vnc-ca" condition "Issuing" to 2026-02-27 18:47:50.817391337 +0000 UTC m=+1471.123519402 I0227 18:47:50.833637 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/libvirt-vnc-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-vnc-ca\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:47:50.833716 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/libvirt-vnc-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0227 18:47:50.833737 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-vnc-ca" condition "Issuing" to 2026-02-27 18:47:50.833731196 +0000 UTC m=+1471.139859241 I0227 18:47:50.878670 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-vnc-ca-nzsd2" condition "Approved" to 2026-02-27 18:47:50.878656007 +0000 UTC m=+1471.184784022 I0227 18:47:50.899910 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-vnc-ca-nzsd2" condition "Ready" to 2026-02-27 18:47:50.89989908 +0000 UTC m=+1471.206027115 I0227 18:47:50.923264 1 conditions.go:192] Found status change for Certificate "libvirt-vnc-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-27 18:47:50.923249391 +0000 UTC m=+1471.229377416 I0227 18:47:50.944967 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="openstack/libvirt-vnc-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-vnc-ca\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:47:51.472237 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/libvirt-api-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0227 18:47:51.472340 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-api-ca" condition "Issuing" to 2026-02-27 18:47:51.472330652 +0000 UTC m=+1471.778458717 I0227 18:47:51.472355 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-api-ca" condition "Ready" to 2026-02-27 18:47:51.472333973 +0000 UTC m=+1471.778462028 I0227 18:47:51.489089 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/libvirt-api-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-api-ca\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:47:51.489182 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-api-ca" condition "Ready" to 2026-02-27 18:47:51.489171353 +0000 UTC m=+1471.795299388 I0227 18:47:51.511013 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/libvirt-api-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-api-ca\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:47:51.511090 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-api-ca" condition "Ready" to 2026-02-27 18:47:51.511079591 +0000 UTC m=+1471.817207626 I0227 18:47:51.520513 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-api-ca-fkjrk" condition "Approved" to 2026-02-27 18:47:51.520498509 +0000 UTC m=+1471.826626544 I0227 18:47:51.535509 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-api-ca-fkjrk" condition "Ready" to 2026-02-27 18:47:51.535497907 +0000 UTC m=+1471.841625932 I0227 18:47:51.562253 1 conditions.go:192] Found status change for Certificate "libvirt-api-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-27 18:47:51.562234857 +0000 UTC m=+1471.868362922 I0227 18:47:51.584195 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/libvirt-api-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-api-ca\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:47:51.584600 1 conditions.go:192] Found status change for Certificate "libvirt-api-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-27 18:47:51.584587755 +0000 UTC m=+1471.890715810 I0227 18:47:51.601656 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/libvirt-api-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-api-ca\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:47:51.602365 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/libvirt-api-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-api-ca\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:47:51.602550 1 conditions.go:192] Found status change for Certificate "libvirt-api-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-27 18:47:51.602537602 +0000 UTC m=+1471.908665637 I0227 18:47:52.163879 1 conditions.go:96] Setting lastTransitionTime for Issuer "libvirt-vnc" condition "Ready" to 2026-02-27 18:47:52.163862106 +0000 UTC m=+1472.469990171 I0227 18:47:52.770422 1 conditions.go:96] Setting lastTransitionTime for Issuer "libvirt-api" condition "Ready" to 2026-02-27 18:47:52.770408138 +0000 UTC m=+1473.076536193 I0227 18:48:40.811726 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-novncproxy-vencrypt" condition "Ready" to 2026-02-27 18:48:40.811712071 +0000 UTC m=+1521.117840096 I0227 18:48:40.812178 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/nova-novncproxy-vencrypt" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0227 18:48:40.812204 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-novncproxy-vencrypt" condition "Issuing" to 2026-02-27 18:48:40.812199292 +0000 UTC m=+1521.118327317 I0227 18:48:40.845620 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/nova-novncproxy-vencrypt" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-novncproxy-vencrypt\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:48:40.845749 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/nova-novncproxy-vencrypt" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0227 18:48:40.845985 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-novncproxy-vencrypt" condition "Issuing" to 2026-02-27 18:48:40.845968825 +0000 UTC m=+1521.152096970 I0227 18:48:44.437176 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/nova-novncproxy-vencrypt" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-novncproxy-vencrypt\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:48:44.456424 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "nova-novncproxy-vencrypt-pjmkp" condition "Approved" to 2026-02-27 18:48:44.456398311 +0000 UTC m=+1524.762526366 I0227 18:48:44.479403 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "nova-novncproxy-vencrypt-pjmkp" condition "Ready" to 2026-02-27 18:48:44.479388884 +0000 UTC m=+1524.785516919 I0227 18:48:44.515305 1 conditions.go:192] Found status change for Certificate "nova-novncproxy-vencrypt" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-27 18:48:44.515291746 +0000 UTC m=+1524.821419771 I0227 18:48:44.582730 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/nova-novncproxy-vencrypt" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-novncproxy-vencrypt\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:48:44.584126 1 conditions.go:192] Found status change for Certificate "nova-novncproxy-vencrypt" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-27 18:48:44.584119332 +0000 UTC m=+1524.890247367 I0227 18:48:44.593899 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="openstack/nova-novncproxy-vencrypt" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-novncproxy-vencrypt\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:48:44.604615 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/nova-novncproxy-vencrypt" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-novncproxy-vencrypt\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:48:44.605558 1 conditions.go:192] Found status change for Certificate "nova-novncproxy-vencrypt" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-27 18:48:44.605549469 +0000 UTC m=+1524.911677484 I0227 18:48:44.606841 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/nova-novncproxy-vencrypt" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-novncproxy-vencrypt\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:51:04.613253 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-api-certs" condition "Ready" to 2026-02-27 18:51:04.613229747 +0000 UTC m=+1664.919357782 I0227 18:51:04.613563 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/nova-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0227 18:51:04.613615 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-api-certs" condition "Issuing" to 2026-02-27 18:51:04.613600426 +0000 UTC m=+1664.919728481 I0227 18:51:04.631035 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/nova-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:51:04.631125 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-api-certs" condition "Ready" to 2026-02-27 18:51:04.631116232 +0000 UTC m=+1664.937244267 I0227 18:51:04.773100 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/nova-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:51:04.803443 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "nova-api-certs-k2pxj" condition "Approved" to 2026-02-27 18:51:04.803429127 +0000 UTC m=+1665.109557162 I0227 18:51:04.824357 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "nova-api-certs-k2pxj" condition "Ready" to 2026-02-27 18:51:04.824341862 +0000 UTC m=+1665.130469897 I0227 18:51:04.886932 1 conditions.go:192] Found status change for Certificate "nova-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-27 18:51:04.886921493 +0000 UTC m=+1665.193049518 I0227 18:51:04.915106 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/nova-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:51:04.915544 1 conditions.go:192] Found status change for Certificate "nova-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-27 18:51:04.915538936 +0000 UTC m=+1665.221666961 I0227 18:51:04.930506 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/nova-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:51:04.933197 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/nova-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:51:04.933815 1 conditions.go:192] Found status change for Certificate "nova-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-27 18:51:04.933805879 +0000 UTC m=+1665.239933904 I0227 18:51:05.948333 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/nova-novncproxy-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0227 18:51:05.948380 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-novncproxy-certs" condition "Issuing" to 2026-02-27 18:51:05.948370441 +0000 UTC m=+1666.254498476 I0227 18:51:05.948485 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-novncproxy-certs" condition "Ready" to 2026-02-27 18:51:05.948469694 +0000 UTC m=+1666.254597729 I0227 18:51:05.963623 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/nova-novncproxy-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-novncproxy-certs\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:51:05.963771 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/nova-novncproxy-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0227 18:51:05.963804 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-novncproxy-certs" condition "Issuing" to 2026-02-27 18:51:05.963793609 +0000 UTC m=+1666.269921654 I0227 18:51:06.313935 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "nova-novncproxy-certs-c8rp6" condition "Approved" to 2026-02-27 18:51:06.313916086 +0000 UTC m=+1666.620044111 I0227 18:51:06.331514 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "nova-novncproxy-certs-c8rp6" condition "Ready" to 2026-02-27 18:51:06.331494704 +0000 UTC m=+1666.637622769 I0227 18:51:06.372188 1 conditions.go:192] Found status change for Certificate "nova-novncproxy-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-27 18:51:06.372170257 +0000 UTC m=+1666.678298312 I0227 18:51:06.394202 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="openstack/nova-novncproxy-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-novncproxy-certs\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:51:06.408405 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="openstack/nova-novncproxy-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-novncproxy-certs\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:53:51.953031 1 conditions.go:203] Setting lastTransitionTime for Certificate "neutron-server-certs" condition "Ready" to 2026-02-27 18:53:51.953011939 +0000 UTC m=+1832.259139974 I0227 18:53:51.953308 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/neutron-server-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0227 18:53:51.953368 1 conditions.go:203] Setting lastTransitionTime for Certificate "neutron-server-certs" condition "Issuing" to 2026-02-27 18:53:51.953355437 +0000 UTC m=+1832.259483502 I0227 18:53:51.971651 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/neutron-server-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"neutron-server-certs\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:53:51.971765 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/neutron-server-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0227 18:53:51.971797 1 conditions.go:203] Setting lastTransitionTime for Certificate "neutron-server-certs" condition "Issuing" to 2026-02-27 18:53:51.971788214 +0000 UTC m=+1832.277916269 I0227 18:53:52.422389 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/neutron-server-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"neutron-server-certs\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:53:52.428374 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "neutron-server-certs-2jbbm" condition "Approved" to 2026-02-27 18:53:52.428351691 +0000 UTC m=+1832.734479776 I0227 18:53:52.447491 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "neutron-server-certs-2jbbm" condition "Ready" to 2026-02-27 18:53:52.447477785 +0000 UTC m=+1832.753605810 I0227 18:53:52.477084 1 conditions.go:192] Found status change for Certificate "neutron-server-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-27 18:53:52.47707225 +0000 UTC m=+1832.783200285 I0227 18:53:52.501691 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="openstack/neutron-server-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"neutron-server-certs\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:53:52.551817 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/neutron-server-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"neutron-server-certs\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:54:38.366924 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-libvirt-default-sttm6-vnc" condition "Ready" to 2026-02-27 18:54:38.366909376 +0000 UTC m=+1878.673037421 I0227 18:54:38.367307 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/libvirt-libvirt-default-sttm6-vnc" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0227 18:54:38.367339 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-libvirt-default-sttm6-vnc" condition "Issuing" to 2026-02-27 18:54:38.367335846 +0000 UTC m=+1878.673463881 I0227 18:54:38.382262 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-libvirt-default-sttm6-api" condition "Ready" to 2026-02-27 18:54:38.382237802 +0000 UTC m=+1878.688365857 I0227 18:54:38.382394 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/libvirt-libvirt-default-sttm6-api" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0227 18:54:38.383527 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-libvirt-default-sttm6-api" condition "Issuing" to 2026-02-27 18:54:38.383517081 +0000 UTC m=+1878.689645146 I0227 18:54:38.393683 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/libvirt-libvirt-default-sttm6-vnc" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-libvirt-default-sttm6-vnc\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:54:38.393796 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-libvirt-default-sttm6-vnc" condition "Ready" to 2026-02-27 18:54:38.393788909 +0000 UTC m=+1878.699916944 I0227 18:54:38.400137 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/libvirt-libvirt-default-sttm6-api" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-libvirt-default-sttm6-api\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:54:38.400286 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/libvirt-libvirt-default-sttm6-api" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0227 18:54:38.400500 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-libvirt-default-sttm6-api" condition "Issuing" to 2026-02-27 18:54:38.40030929 +0000 UTC m=+1878.706437335 I0227 18:54:38.590980 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/libvirt-libvirt-default-sttm6-vnc" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-libvirt-default-sttm6-vnc\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:54:38.625566 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-libvirt-default-sttm6-vnc-xkx4p" condition "Approved" to 2026-02-27 18:54:38.625548069 +0000 UTC m=+1878.931676164 I0227 18:54:38.646122 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-libvirt-default-sttm6-vnc-xkx4p" condition "Ready" to 2026-02-27 18:54:38.646108535 +0000 UTC m=+1878.952236580 I0227 18:54:38.673699 1 conditions.go:192] Found status change for Certificate "libvirt-libvirt-default-sttm6-vnc" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-27 18:54:38.673688784 +0000 UTC m=+1878.979816819 I0227 18:54:38.703487 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/libvirt-libvirt-default-sttm6-vnc" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-libvirt-default-sttm6-vnc\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:54:38.704205 1 conditions.go:192] Found status change for Certificate "libvirt-libvirt-default-sttm6-vnc" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-27 18:54:38.704197411 +0000 UTC m=+1879.010325436 I0227 18:54:38.718261 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/libvirt-libvirt-default-sttm6-vnc" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-libvirt-default-sttm6-vnc\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:54:38.718805 1 conditions.go:192] Found status change for Certificate "libvirt-libvirt-default-sttm6-vnc" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-27 18:54:38.718800219 +0000 UTC m=+1879.024928244 I0227 18:54:38.847489 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-libvirt-default-sttm6-api-4trl4" condition "Approved" to 2026-02-27 18:54:38.84746959 +0000 UTC m=+1879.153597665 I0227 18:54:38.862916 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-libvirt-default-sttm6-api-4trl4" condition "Ready" to 2026-02-27 18:54:38.862906508 +0000 UTC m=+1879.169034533 I0227 18:54:38.891946 1 conditions.go:192] Found status change for Certificate "libvirt-libvirt-default-sttm6-api" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-27 18:54:38.89193398 +0000 UTC m=+1879.198062015 I0227 18:54:38.911458 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="openstack/libvirt-libvirt-default-sttm6-api" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-libvirt-default-sttm6-api\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:56:42.845557 1 conditions.go:203] Setting lastTransitionTime for Certificate "senlin-api-certs" condition "Ready" to 2026-02-27 18:56:42.845537453 +0000 UTC m=+2003.151665518 I0227 18:56:42.845604 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/senlin-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0227 18:56:42.845617 1 conditions.go:203] Setting lastTransitionTime for Certificate "senlin-api-certs" condition "Issuing" to 2026-02-27 18:56:42.845614044 +0000 UTC m=+2003.151742069 I0227 18:56:42.863262 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/senlin-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"senlin-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:56:42.863509 1 conditions.go:203] Setting lastTransitionTime for Certificate "senlin-api-certs" condition "Ready" to 2026-02-27 18:56:42.863499959 +0000 UTC m=+2003.169628034 I0227 18:56:42.941094 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/senlin-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"senlin-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:56:42.974075 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "senlin-api-certs-5g4bx" condition "Approved" to 2026-02-27 18:56:42.97404797 +0000 UTC m=+2003.280176025 I0227 18:56:42.994020 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "senlin-api-certs-5g4bx" condition "Ready" to 2026-02-27 18:56:42.994005293 +0000 UTC m=+2003.300133318 I0227 18:56:43.025117 1 conditions.go:192] Found status change for Certificate "senlin-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-27 18:56:43.025104874 +0000 UTC m=+2003.331232899 I0227 18:56:43.047825 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/senlin-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"senlin-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0227 18:56:43.048228 1 conditions.go:192] Found status change for Certificate "senlin-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-27 18:56:43.048222669 +0000 UTC m=+2003.354350694 I0227 18:56:43.063215 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/senlin-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"senlin-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0227 19:00:12.786464 1 conditions.go:203] Setting lastTransitionTime for Certificate "heat-api-certs" condition "Ready" to 2026-02-27 19:00:12.786447874 +0000 UTC m=+2213.092575909 I0227 19:00:12.786680 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/heat-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0227 19:00:12.786745 1 conditions.go:203] Setting lastTransitionTime for Certificate "heat-api-certs" condition "Issuing" to 2026-02-27 19:00:12.786738701 +0000 UTC m=+2213.092866726 I0227 19:00:12.814533 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/heat-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"heat-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0227 19:00:12.814617 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/heat-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0227 19:00:12.814636 1 conditions.go:203] Setting lastTransitionTime for Certificate "heat-api-certs" condition "Issuing" to 2026-02-27 19:00:12.814630787 +0000 UTC m=+2213.120758822 I0227 19:00:13.087046 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/heat-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"heat-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0227 19:00:13.098223 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "heat-api-certs-rk9ps" condition "Approved" to 2026-02-27 19:00:13.098210798 +0000 UTC m=+2213.404338833 I0227 19:00:13.121937 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "heat-api-certs-rk9ps" condition "Ready" to 2026-02-27 19:00:13.121924667 +0000 UTC m=+2213.428052702 I0227 19:00:13.150436 1 conditions.go:192] Found status change for Certificate "heat-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-27 19:00:13.150420678 +0000 UTC m=+2213.456548743 I0227 19:00:13.168801 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/heat-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"heat-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0227 19:00:13.169432 1 conditions.go:192] Found status change for Certificate "heat-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-27 19:00:13.169423988 +0000 UTC m=+2213.475552023 I0227 19:00:13.174900 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="openstack/heat-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"heat-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0227 19:00:13.185585 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/heat-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"heat-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0227 19:00:13.188831 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/heat-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"heat-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0227 19:00:13.189334 1 conditions.go:192] Found status change for Certificate "heat-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-27 19:00:13.189321159 +0000 UTC m=+2213.495449214 I0227 19:00:14.170970 1 conditions.go:203] Setting lastTransitionTime for Certificate "heat-cfn-certs" condition "Ready" to 2026-02-27 19:00:14.170955634 +0000 UTC m=+2214.477083659 I0227 19:00:14.171181 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/heat-cfn-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0227 19:00:14.171245 1 conditions.go:203] Setting lastTransitionTime for Certificate "heat-cfn-certs" condition "Issuing" to 2026-02-27 19:00:14.17123151 +0000 UTC m=+2214.477359545 I0227 19:00:14.189864 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/heat-cfn-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"heat-cfn-certs\": the object has been modified; please apply your changes to the latest version and try again" I0227 19:00:14.189916 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/heat-cfn-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0227 19:00:14.189932 1 conditions.go:203] Setting lastTransitionTime for Certificate "heat-cfn-certs" condition "Issuing" to 2026-02-27 19:00:14.189926063 +0000 UTC m=+2214.496054078 I0227 19:00:14.402726 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "heat-cfn-certs-psddw" condition "Approved" to 2026-02-27 19:00:14.402713874 +0000 UTC m=+2214.708841909 I0227 19:00:14.418668 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "heat-cfn-certs-psddw" condition "Ready" to 2026-02-27 19:00:14.418659493 +0000 UTC m=+2214.724787518 I0227 19:00:14.446825 1 conditions.go:192] Found status change for Certificate "heat-cfn-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-27 19:00:14.446806656 +0000 UTC m=+2214.752934721 I0227 19:00:14.469010 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="openstack/heat-cfn-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"heat-cfn-certs\": the object has been modified; please apply your changes to the latest version and try again" I0227 19:02:25.648028 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-client-ca" condition "Ready" to 2026-02-27 19:02:25.648008843 +0000 UTC m=+2345.954136878 I0227 19:02:25.648444 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/octavia-client-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0227 19:02:25.648465 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-client-ca" condition "Issuing" to 2026-02-27 19:02:25.648461633 +0000 UTC m=+2345.954589668 I0227 19:02:25.662955 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/octavia-client-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-client-ca\": the object has been modified; please apply your changes to the latest version and try again" I0227 19:02:25.663108 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/octavia-client-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0227 19:02:25.663134 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-client-ca" condition "Issuing" to 2026-02-27 19:02:25.663126103 +0000 UTC m=+2345.969254128 E0227 19:02:25.665276 1 setup.go:48] "cert-manager/issuers/setup: error getting signing CA TLS certificate" err="secret \"octavia-client-ca\" not found" resource_name="octavia-client" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0227 19:02:25.665382 1 conditions.go:96] Setting lastTransitionTime for Issuer "octavia-client" condition "Ready" to 2026-02-27 19:02:25.665369934 +0000 UTC m=+2345.971497989 I0227 19:02:25.665487 1 sync.go:62] "cert-manager/issuers: Error initializing issuer: secret \"octavia-client-ca\" not found" resource_name="octavia-client" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0227 19:02:25.675523 1 controller.go:167] "cert-manager/issuers: re-queuing item due to error processing" err="secret \"octavia-client-ca\" not found" key="openstack/octavia-client" E0227 19:02:25.675681 1 setup.go:48] "cert-manager/issuers/setup: error getting signing CA TLS certificate" err="secret \"octavia-client-ca\" not found" resource_name="octavia-client" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0227 19:02:25.675752 1 sync.go:62] "cert-manager/issuers: Error initializing issuer: secret \"octavia-client-ca\" not found" resource_name="octavia-client" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0227 19:02:25.675829 1 controller.go:167] "cert-manager/issuers: re-queuing item due to error processing" err="secret \"octavia-client-ca\" not found" key="openstack/octavia-client" I0227 19:02:25.705477 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/octavia-client-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-client-ca\": the object has been modified; please apply your changes to the latest version and try again" I0227 19:02:25.706414 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-client-ca-q4ktt" condition "Approved" to 2026-02-27 19:02:25.706393554 +0000 UTC m=+2346.012521609 I0227 19:02:25.725594 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-client-ca-q4ktt" condition "Ready" to 2026-02-27 19:02:25.725557667 +0000 UTC m=+2346.031685682 I0227 19:02:25.759029 1 conditions.go:192] Found status change for Certificate "octavia-client-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-27 19:02:25.759011521 +0000 UTC m=+2346.065139556 I0227 19:02:25.782443 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="openstack/octavia-client-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-client-ca\": the object has been modified; please apply your changes to the latest version and try again" I0227 19:02:25.830689 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/octavia-client-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-client-ca\": the object has been modified; please apply your changes to the latest version and try again" I0227 19:02:26.347257 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-server-ca" condition "Ready" to 2026-02-27 19:02:26.34724446 +0000 UTC m=+2346.653372485 I0227 19:02:26.347731 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/octavia-server-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0227 19:02:26.347744 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-server-ca" condition "Issuing" to 2026-02-27 19:02:26.347741192 +0000 UTC m=+2346.653869217 I0227 19:02:26.362910 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/octavia-server-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-server-ca\": the object has been modified; please apply your changes to the latest version and try again" E0227 19:02:26.363314 1 setup.go:48] "cert-manager/issuers/setup: error getting signing CA TLS certificate" err="secret \"octavia-server-ca\" not found" resource_name="octavia-server" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0227 19:02:26.363347 1 conditions.go:96] Setting lastTransitionTime for Issuer "octavia-server" condition "Ready" to 2026-02-27 19:02:26.363339493 +0000 UTC m=+2346.669467528 I0227 19:02:26.363420 1 sync.go:62] "cert-manager/issuers: Error initializing issuer: secret \"octavia-server-ca\" not found" resource_name="octavia-server" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0227 19:02:26.363797 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/octavia-server-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0227 19:02:26.363830 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-server-ca" condition "Issuing" to 2026-02-27 19:02:26.363824184 +0000 UTC m=+2346.669952229 E0227 19:02:26.372101 1 controller.go:167] "cert-manager/issuers: re-queuing item due to error processing" err="secret \"octavia-server-ca\" not found" key="openstack/octavia-server" E0227 19:02:26.372226 1 setup.go:48] "cert-manager/issuers/setup: error getting signing CA TLS certificate" err="secret \"octavia-server-ca\" not found" resource_name="octavia-server" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0227 19:02:26.372250 1 sync.go:62] "cert-manager/issuers: Error initializing issuer: secret \"octavia-server-ca\" not found" resource_name="octavia-server" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0227 19:02:26.372378 1 controller.go:167] "cert-manager/issuers: re-queuing item due to error processing" err="secret \"octavia-server-ca\" not found" key="openstack/octavia-server" I0227 19:02:26.412492 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-server-ca-klf2m" condition "Approved" to 2026-02-27 19:02:26.41247035 +0000 UTC m=+2346.718598415 I0227 19:02:26.430505 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-server-ca-klf2m" condition "Ready" to 2026-02-27 19:02:26.430487686 +0000 UTC m=+2346.736615701 I0227 19:02:26.458677 1 conditions.go:192] Found status change for Certificate "octavia-server-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-27 19:02:26.458656608 +0000 UTC m=+2346.764784653 I0227 19:02:26.482667 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="openstack/octavia-server-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-server-ca\": the object has been modified; please apply your changes to the latest version and try again" I0227 19:02:27.089318 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-client-certs" condition "Ready" to 2026-02-27 19:02:27.08930124 +0000 UTC m=+2347.395429275 I0227 19:02:27.089423 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/octavia-client-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0227 19:02:27.089464 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-client-certs" condition "Issuing" to 2026-02-27 19:02:27.089458113 +0000 UTC m=+2347.395586168 I0227 19:02:27.108690 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/octavia-client-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-client-certs\": the object has been modified; please apply your changes to the latest version and try again" I0227 19:02:27.108809 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/octavia-client-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0227 19:02:27.108830 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-client-certs" condition "Issuing" to 2026-02-27 19:02:27.108823701 +0000 UTC m=+2347.414951736 I0227 19:02:27.158635 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-client-certs-clgpv" condition "Approved" to 2026-02-27 19:02:27.158609233 +0000 UTC m=+2347.464737268 I0227 19:02:27.172788 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-client-certs-clgpv" condition "Ready" to 2026-02-27 19:02:27.172770631 +0000 UTC m=+2347.478898666 I0227 19:02:30.676741 1 conditions.go:85] Found status change for Issuer "octavia-client" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-27 19:02:30.676724283 +0000 UTC m=+2350.982852338 I0227 19:02:30.692084 1 conditions.go:252] Found status change for CertificateRequest "octavia-client-certs-clgpv" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-27 19:02:30.692070348 +0000 UTC m=+2350.998198383 I0227 19:02:30.726866 1 conditions.go:192] Found status change for Certificate "octavia-client-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-27 19:02:30.726850222 +0000 UTC m=+2351.032978287 I0227 19:02:30.748703 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="openstack/octavia-client-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-client-certs\": the object has been modified; please apply your changes to the latest version and try again" I0227 19:02:31.374362 1 conditions.go:85] Found status change for Issuer "octavia-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-27 19:02:31.374333094 +0000 UTC m=+2351.680461159 I0227 19:04:36.114975 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/octavia-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0227 19:04:36.115012 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-api-certs" condition "Issuing" to 2026-02-27 19:04:36.115003126 +0000 UTC m=+2476.421131141 I0227 19:04:36.115055 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-api-certs" condition "Ready" to 2026-02-27 19:04:36.115030517 +0000 UTC m=+2476.421158582 I0227 19:04:36.134594 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/octavia-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0227 19:04:36.134711 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-api-certs" condition "Ready" to 2026-02-27 19:04:36.134704482 +0000 UTC m=+2476.440832507 I0227 19:04:36.220419 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/octavia-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0227 19:04:36.252278 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-api-certs-bzq99" condition "Approved" to 2026-02-27 19:04:36.252259622 +0000 UTC m=+2476.558387677 I0227 19:04:36.272868 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-api-certs-bzq99" condition "Ready" to 2026-02-27 19:04:36.272854278 +0000 UTC m=+2476.578982303 I0227 19:04:36.303977 1 conditions.go:192] Found status change for Certificate "octavia-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-27 19:04:36.303963058 +0000 UTC m=+2476.610091073 I0227 19:04:36.326077 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/octavia-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0227 19:04:36.327077 1 conditions.go:192] Found status change for Certificate "octavia-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-27 19:04:36.327067483 +0000 UTC m=+2476.633195528 I0227 19:04:36.350758 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/octavia-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0227 19:05:21.692807 1 conditions.go:96] Setting lastTransitionTime for Issuer "test-selfsigned" condition "Ready" to 2026-02-27 19:05:21.692778579 +0000 UTC m=+2521.998906644 I0227 19:05:21.712476 1 conditions.go:203] Setting lastTransitionTime for Certificate "selfsigned-cert" condition "Ready" to 2026-02-27 19:05:21.712459005 +0000 UTC m=+2522.018587020 I0227 19:05:21.712700 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="cert-manager-test/selfsigned-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0227 19:05:21.712756 1 conditions.go:203] Setting lastTransitionTime for Certificate "selfsigned-cert" condition "Issuing" to 2026-02-27 19:05:21.712750672 +0000 UTC m=+2522.018878707 I0227 19:05:21.728243 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="cert-manager-test/selfsigned-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"selfsigned-cert\": the object has been modified; please apply your changes to the latest version and try again" I0227 19:05:21.728296 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="cert-manager-test/selfsigned-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0227 19:05:21.728313 1 conditions.go:203] Setting lastTransitionTime for Certificate "selfsigned-cert" condition "Issuing" to 2026-02-27 19:05:21.728309512 +0000 UTC m=+2522.034437537 E0227 19:05:21.737659 1 controller.go:134] "cert-manager/issuers: issuer in work queue no longer exists" err="issuer.cert-manager.io \"test-selfsigned\" not found" E0227 19:05:21.739458 1 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"selfsigned-cert.18982fe6cf4fee32", GenerateName:"", Namespace:"cert-manager-test", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Certificate", Namespace:"cert-manager-test", Name:"selfsigned-cert", UID:"6645f7cb-d5c8-4afc-945e-ba452971aa60", APIVersion:"cert-manager.io/v1", ResourceVersion:"23772", FieldPath:""}, Reason:"Issuing", Message:"Issuing certificate as Secret does not exist", Source:v1.EventSource{Component:"cert-manager-certificates-trigger", Host:""}, FirstTimestamp:time.Date(2026, time.February, 27, 19, 5, 21, 737395762, time.Local), LastTimestamp:time.Date(2026, time.February, 27, 19, 5, 21, 737395762, time.Local), Count:1, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "selfsigned-cert.18982fe6cf4fee32" is forbidden: unable to create new content in namespace cert-manager-test because it is being terminated' (will not retry!) I0227 19:05:21.797163 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-selfsigned-issuer" condition "Ready" to 2026-02-27 19:05:21.797142654 +0000 UTC m=+2522.103270689 I0227 19:05:21.810977 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Ready" to 2026-02-27 19:05:21.810955594 +0000 UTC m=+2522.117083659 I0227 19:05:21.811018 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="capi-system/capi-serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0227 19:05:21.811041 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Issuing" to 2026-02-27 19:05:21.811036516 +0000 UTC m=+2522.117164551 I0227 19:05:21.825143 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="capi-system/capi-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0227 19:05:21.825222 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="capi-system/capi-serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0227 19:05:21.825249 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Issuing" to 2026-02-27 19:05:21.825242365 +0000 UTC m=+2522.131370400 E0227 19:05:21.923467 1 controller.go:167] "cert-manager/certificates-key-manager: re-queuing item due to error processing" err="secrets \"selfsigned-cert-\" is forbidden: unable to create new content in namespace cert-manager-test because it is being terminated" key="cert-manager-test/selfsigned-cert" I0227 19:05:21.972462 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="capi-system/capi-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0227 19:05:21.978419 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-serving-cert-clxnz" condition "Approved" to 2026-02-27 19:05:21.978410578 +0000 UTC m=+2522.284538603 I0227 19:05:22.001328 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-serving-cert-clxnz" condition "Ready" to 2026-02-27 19:05:22.001319129 +0000 UTC m=+2522.307447154 I0227 19:05:22.039810 1 conditions.go:192] Found status change for Certificate "capi-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-27 19:05:22.039795479 +0000 UTC m=+2522.345923514 I0227 19:05:22.057782 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="capi-system/capi-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0227 19:05:22.059695 1 conditions.go:192] Found status change for Certificate "capi-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-27 19:05:22.059687359 +0000 UTC m=+2522.365815384 I0227 19:05:22.082962 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="capi-system/capi-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0227 19:05:22.517343 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-kubeadm-bootstrap-selfsigned-issuer" condition "Ready" to 2026-02-27 19:05:22.517321927 +0000 UTC m=+2522.823449992 I0227 19:05:22.537314 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready" to 2026-02-27 19:05:22.53729734 +0000 UTC m=+2522.843425375 I0227 19:05:22.537627 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0227 19:05:22.537679 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Issuing" to 2026-02-27 19:05:22.537668548 +0000 UTC m=+2522.843796603 I0227 19:05:22.558641 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0227 19:05:22.558688 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0227 19:05:22.558701 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Issuing" to 2026-02-27 19:05:22.558697045 +0000 UTC m=+2522.864825070 I0227 19:05:22.817554 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-bootstrap-serving-cert-pjvsj" condition "Approved" to 2026-02-27 19:05:22.817541254 +0000 UTC m=+2523.123669279 I0227 19:05:22.835125 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-bootstrap-serving-cert-pjvsj" condition "Ready" to 2026-02-27 19:05:22.835115601 +0000 UTC m=+2523.141243636 I0227 19:05:22.870599 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-27 19:05:22.870570821 +0000 UTC m=+2523.176698836 I0227 19:05:22.901239 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0227 19:05:22.901684 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-27 19:05:22.90166647 +0000 UTC m=+2523.207794495 I0227 19:05:22.933212 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0227 19:05:22.937758 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-kubeadm-control-plane-selfsigned-issuer" condition "Ready" to 2026-02-27 19:05:22.937739065 +0000 UTC m=+2523.243867100 I0227 19:05:22.959627 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready" to 2026-02-27 19:05:22.959607261 +0000 UTC m=+2523.265735326 I0227 19:05:22.959748 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0227 19:05:22.959779 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Issuing" to 2026-02-27 19:05:22.959772435 +0000 UTC m=+2523.265900450 I0227 19:05:22.979424 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0227 19:05:22.979486 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready" to 2026-02-27 19:05:22.979480681 +0000 UTC m=+2523.285608706 I0227 19:05:23.358212 1 conditions.go:96] Setting lastTransitionTime for Issuer "capo-selfsigned-issuer" condition "Ready" to 2026-02-27 19:05:23.358197203 +0000 UTC m=+2523.664325228 I0227 19:05:23.381515 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Ready" to 2026-02-27 19:05:23.381496982 +0000 UTC m=+2523.687625047 I0227 19:05:23.382007 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="capo-system/capo-serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0227 19:05:23.382040 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Issuing" to 2026-02-27 19:05:23.382033005 +0000 UTC m=+2523.688161070 I0227 19:05:23.395661 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="capo-system/capo-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0227 19:05:23.395766 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="capo-system/capo-serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0227 19:05:23.395795 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Issuing" to 2026-02-27 19:05:23.395787323 +0000 UTC m=+2523.701915378 I0227 19:05:23.451608 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0227 19:05:23.493877 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-control-plane-serving-cert-6frpx" condition "Approved" to 2026-02-27 19:05:23.493863092 +0000 UTC m=+2523.799991127 I0227 19:05:23.566976 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-control-plane-serving-cert-6frpx" condition "Ready" to 2026-02-27 19:05:23.566965913 +0000 UTC m=+2523.873093938 I0227 19:05:23.705079 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-27 19:05:23.705067909 +0000 UTC m=+2524.011195934 I0227 19:05:23.757302 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capo-serving-cert-dxvcg" condition "Approved" to 2026-02-27 19:05:23.757285107 +0000 UTC m=+2524.063413132 I0227 19:05:23.854871 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0227 19:05:23.856428 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-27 19:05:23.856417291 +0000 UTC m=+2524.162545326 I0227 19:05:24.217628 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capo-serving-cert-dxvcg" condition "Ready" to 2026-02-27 19:05:24.217614188 +0000 UTC m=+2524.523742223 I0227 19:05:24.611585 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0227 19:05:24.659011 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0227 19:05:24.755494 1 conditions.go:192] Found status change for Certificate "capo-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-27 19:05:24.755478213 +0000 UTC m=+2525.061606248 I0227 19:05:24.910275 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="capo-system/capo-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0227 19:05:24.910955 1 conditions.go:192] Found status change for Certificate "capo-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-27 19:05:24.910946389 +0000 UTC m=+2525.217074444 I0227 19:05:25.154828 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="capo-system/capo-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0227 19:05:25.203101 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="capo-system/capo-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0227 19:08:31.914466 1 conditions.go:203] Setting lastTransitionTime for Certificate "magnum-api-certs" condition "Ready" to 2026-02-27 19:08:31.914450522 +0000 UTC m=+2712.220578557 I0227 19:08:31.915158 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/magnum-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0227 19:08:31.915197 1 conditions.go:203] Setting lastTransitionTime for Certificate "magnum-api-certs" condition "Issuing" to 2026-02-27 19:08:31.91519002 +0000 UTC m=+2712.221318055 I0227 19:08:31.931258 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/magnum-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"magnum-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0227 19:08:31.931455 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/magnum-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0227 19:08:31.931482 1 conditions.go:203] Setting lastTransitionTime for Certificate "magnum-api-certs" condition "Issuing" to 2026-02-27 19:08:31.931476356 +0000 UTC m=+2712.237604391 I0227 19:08:32.058280 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "magnum-api-certs-c5srw" condition "Approved" to 2026-02-27 19:08:32.05826501 +0000 UTC m=+2712.364393045 I0227 19:08:32.081381 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "magnum-api-certs-c5srw" condition "Ready" to 2026-02-27 19:08:32.081370104 +0000 UTC m=+2712.387498139 I0227 19:08:32.125332 1 conditions.go:192] Found status change for Certificate "magnum-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-27 19:08:32.125313481 +0000 UTC m=+2712.431441546 I0227 19:08:32.154593 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/magnum-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"magnum-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0227 19:08:32.156257 1 conditions.go:192] Found status change for Certificate "magnum-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-27 19:08:32.156248577 +0000 UTC m=+2712.462376592 I0227 19:08:32.174569 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/magnum-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"magnum-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0227 19:08:32.176256 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/magnum-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"magnum-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0227 19:08:32.176831 1 conditions.go:192] Found status change for Certificate "magnum-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-27 19:08:32.176823293 +0000 UTC m=+2712.482951328 I0227 19:08:34.915798 1 conditions.go:203] Setting lastTransitionTime for Certificate "magnum-registry-certs" condition "Ready" to 2026-02-27 19:08:34.915781775 +0000 UTC m=+2715.221909830 I0227 19:08:34.916179 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/magnum-registry-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0227 19:08:34.916204 1 conditions.go:203] Setting lastTransitionTime for Certificate "magnum-registry-certs" condition "Issuing" to 2026-02-27 19:08:34.916198125 +0000 UTC m=+2715.222326180 I0227 19:08:34.931790 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/magnum-registry-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"magnum-registry-certs\": the object has been modified; please apply your changes to the latest version and try again" I0227 19:08:34.932002 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/magnum-registry-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0227 19:08:34.932030 1 conditions.go:203] Setting lastTransitionTime for Certificate "magnum-registry-certs" condition "Issuing" to 2026-02-27 19:08:34.932020821 +0000 UTC m=+2715.238148876 I0227 19:08:35.260209 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "magnum-registry-certs-gxl4z" condition "Approved" to 2026-02-27 19:08:35.260194354 +0000 UTC m=+2715.566322389 I0227 19:08:35.276513 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "magnum-registry-certs-gxl4z" condition "Ready" to 2026-02-27 19:08:35.276503051 +0000 UTC m=+2715.582631076 I0227 19:08:35.309341 1 conditions.go:192] Found status change for Certificate "magnum-registry-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-27 19:08:35.309329391 +0000 UTC m=+2715.615457426 I0227 19:08:35.332935 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/magnum-registry-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"magnum-registry-certs\": the object has been modified; please apply your changes to the latest version and try again" I0227 19:08:35.333557 1 conditions.go:192] Found status change for Certificate "magnum-registry-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-27 19:08:35.333549362 +0000 UTC m=+2715.639677387 I0227 19:08:35.360855 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/magnum-registry-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"magnum-registry-certs\": the object has been modified; please apply your changes to the latest version and try again" E0227 19:10:16.714637 1 leaderelection.go:364] Failed to update lock: etcdserver: request timed out