I0320 00:45:47.452168 1 feature_gate.go:249] feature gates: &{map[AdditionalCertificateOutputFormats:true]} I0320 00:45:47.452280 1 start.go:75] cert-manager "msg"="starting controller" "git-commit"="b1d501c85d97afd2adde2e86c2b119ac060caece" "version"="v1.11.5" I0320 00:45:47.452307 1 controller.go:242] cert-manager/controller/build-context "msg"="configured acme dns01 nameservers" "nameservers"=["10.96.0.10:53"] W0320 00:45:47.452360 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0320 00:45:47.453323 1 controller.go:70] cert-manager/controller "msg"="enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" I0320 00:45:47.453589 1 controller.go:134] cert-manager/controller "msg"="starting leader election" I0320 00:45:47.453711 1 controller.go:91] cert-manager/controller "msg"="starting metrics server" "address"={"IP":"::","Port":9402,"Zone":""} I0320 00:45:47.454092 1 leaderelection.go:248] attempting to acquire leader lease cert-manager/cert-manager-controller... I0320 00:45:47.467395 1 leaderelection.go:258] successfully acquired lease cert-manager/cert-manager-controller I0320 00:45:47.468893 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificaterequests-issuer-selfsigned" I0320 00:45:47.469062 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-metrics" I0320 00:45:47.469676 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-request-manager" I0320 00:45:47.470080 1 controller.go:182] cert-manager/controller "msg"="not starting controller as it's disabled" "controller"="certificatesigningrequests-issuer-ca" I0320 00:45:47.470104 1 controller.go:182] cert-manager/controller "msg"="not starting controller as it's disabled" "controller"="certificatesigningrequests-issuer-vault" I0320 00:45:47.470709 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-trigger" I0320 00:45:47.470766 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="challenges" I0320 00:45:47.471246 1 controller.go:182] cert-manager/controller "msg"="not starting controller as it's disabled" "controller"="certificatesigningrequests-issuer-venafi" I0320 00:45:47.471264 1 controller.go:182] cert-manager/controller "msg"="not starting controller as it's disabled" "controller"="gateway-shim" I0320 00:45:47.471335 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificaterequests-issuer-vault" I0320 00:45:47.472333 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-issuing" I0320 00:45:47.472541 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificaterequests-issuer-venafi" I0320 00:45:47.473222 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-revision-manager" I0320 00:45:47.473638 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="clusterissuers" I0320 00:45:47.474790 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="issuers" I0320 00:45:47.475383 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="ingress-shim" I0320 00:45:47.475795 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificaterequests-issuer-acme" I0320 00:45:47.476217 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificaterequests-approver" I0320 00:45:47.476696 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificaterequests-issuer-ca" I0320 00:45:47.477244 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-key-manager" I0320 00:45:47.477535 1 controller.go:182] cert-manager/controller "msg"="not starting controller as it's disabled" "controller"="certificatesigningrequests-issuer-acme" I0320 00:45:47.477556 1 controller.go:182] cert-manager/controller "msg"="not starting controller as it's disabled" "controller"="certificatesigningrequests-issuer-selfsigned" I0320 00:45:47.477612 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-readiness" I0320 00:45:47.478683 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="orders" I0320 00:46:09.828425 1 conditions.go:96] Setting lastTransitionTime for Issuer "test-selfsigned" condition "Ready" to 2026-03-20 00:46:09.82839486 +0000 UTC m=+22.419775053 I0320 00:46:09.842231 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="cert-manager-test/selfsigned-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0320 00:46:09.842263 1 conditions.go:203] Setting lastTransitionTime for Certificate "selfsigned-cert" condition "Issuing" to 2026-03-20 00:46:09.842256714 +0000 UTC m=+22.433636907 I0320 00:46:09.842499 1 conditions.go:203] Setting lastTransitionTime for Certificate "selfsigned-cert" condition "Ready" to 2026-03-20 00:46:09.842482531 +0000 UTC m=+22.433862744 E0320 00:46:09.853072 1 event.go:267] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"selfsigned-cert.189e661b1c0849ad", GenerateName:"", Namespace:"cert-manager-test", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Certificate", Namespace:"cert-manager-test", Name:"selfsigned-cert", UID:"bc627ac8-defb-4d99-b559-7fd7d6b1da75", APIVersion:"cert-manager.io/v1", ResourceVersion:"1220", FieldPath:""}, Reason:"Issuing", Message:"Issuing certificate as Secret does not exist", Source:v1.EventSource{Component:"cert-manager-certificates-trigger", Host:""}, FirstTimestamp:time.Date(2026, time.March, 20, 0, 46, 9, 851009453, time.Local), LastTimestamp:time.Date(2026, time.March, 20, 0, 46, 9, 851009453, time.Local), Count:1, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "selfsigned-cert.189e661b1c0849ad" is forbidden: unable to create new content in namespace cert-manager-test because it is being terminated' (will not retry!) E0320 00:46:09.859790 1 controller.go:137] cert-manager/issuers "msg"="issuer in work queue no longer exists" "error"="issuer.cert-manager.io \"test-selfsigned\" not found" I0320 00:46:09.861295 1 controller.go:162] cert-manager/certificates-readiness "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"selfsigned-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="cert-manager-test/selfsigned-cert" I0320 00:46:09.861456 1 conditions.go:203] Setting lastTransitionTime for Certificate "selfsigned-cert" condition "Ready" to 2026-03-20 00:46:09.861406157 +0000 UTC m=+22.452786350 E0320 00:46:09.873309 1 controller.go:167] cert-manager/certificates-readiness "msg"="re-queuing item due to error processing" "error"="certificates.cert-manager.io \"selfsigned-cert\" not found" "key"="cert-manager-test/selfsigned-cert" I0320 00:46:09.892564 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-selfsigned-issuer" condition "Ready" to 2026-03-20 00:46:09.892552843 +0000 UTC m=+22.483933016 I0320 00:46:09.908008 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="capi-system/capi-serving-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0320 00:46:09.908049 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Issuing" to 2026-03-20 00:46:09.908042342 +0000 UTC m=+22.499422525 I0320 00:46:09.908124 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Ready" to 2026-03-20 00:46:09.908118054 +0000 UTC m=+22.499498237 E0320 00:46:09.923663 1 controller.go:167] cert-manager/certificates-key-manager "msg"="re-queuing item due to error processing" "error"="secrets \"selfsigned-cert-\" is forbidden: unable to create new content in namespace cert-manager-test because it is being terminated" "key"="cert-manager-test/selfsigned-cert" I0320 00:46:09.930109 1 controller.go:162] cert-manager/certificates-readiness "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-system/capi-serving-cert" I0320 00:46:09.930249 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Ready" to 2026-03-20 00:46:09.930243011 +0000 UTC m=+22.521623194 I0320 00:46:10.117853 1 controller.go:162] cert-manager/certificates-key-manager "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-system/capi-serving-cert" I0320 00:46:10.193166 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-serving-cert-mswnn" condition "Approved" to 2026-03-20 00:46:10.193158095 +0000 UTC m=+22.784538268 I0320 00:46:10.246037 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-serving-cert-mswnn" condition "Ready" to 2026-03-20 00:46:10.246023624 +0000 UTC m=+22.837403807 I0320 00:46:10.288297 1 conditions.go:192] Found status change for Certificate "capi-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-20 00:46:10.288283634 +0000 UTC m=+22.879663817 I0320 00:46:10.314013 1 controller.go:162] cert-manager/certificates-readiness "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-system/capi-serving-cert" I0320 00:46:10.315072 1 conditions.go:192] Found status change for Certificate "capi-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-20 00:46:10.31506126 +0000 UTC m=+22.906441463 I0320 00:46:10.347950 1 controller.go:162] cert-manager/certificates-key-manager "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-system/capi-serving-cert" I0320 00:46:10.460804 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-kubeadm-bootstrap-selfsigned-issuer" condition "Ready" to 2026-03-20 00:46:10.460757191 +0000 UTC m=+23.052137364 I0320 00:46:10.484103 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready" to 2026-03-20 00:46:10.484084651 +0000 UTC m=+23.075464834 I0320 00:46:10.484769 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0320 00:46:10.484797 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Issuing" to 2026-03-20 00:46:10.484791625 +0000 UTC m=+23.076171808 I0320 00:46:10.505090 1 controller.go:162] cert-manager/certificates-trigger "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" I0320 00:46:10.505194 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0320 00:46:10.505220 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Issuing" to 2026-03-20 00:46:10.505213416 +0000 UTC m=+23.096593609 I0320 00:46:10.804546 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-kubeadm-control-plane-selfsigned-issuer" condition "Ready" to 2026-03-20 00:46:10.804509926 +0000 UTC m=+23.395890109 I0320 00:46:10.841614 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0320 00:46:10.841642 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Issuing" to 2026-03-20 00:46:10.841636602 +0000 UTC m=+23.433016775 I0320 00:46:10.841756 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready" to 2026-03-20 00:46:10.841743526 +0000 UTC m=+23.433123709 I0320 00:46:10.863403 1 controller.go:162] cert-manager/certificates-readiness "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" I0320 00:46:10.863472 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready" to 2026-03-20 00:46:10.863466691 +0000 UTC m=+23.454846874 I0320 00:46:10.872520 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-bootstrap-serving-cert-zpnxf" condition "Approved" to 2026-03-20 00:46:10.872510707 +0000 UTC m=+23.463890890 I0320 00:46:10.902280 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-bootstrap-serving-cert-zpnxf" condition "Ready" to 2026-03-20 00:46:10.902265054 +0000 UTC m=+23.493645267 I0320 00:46:10.947091 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-20 00:46:10.947081021 +0000 UTC m=+23.538461204 I0320 00:46:10.978477 1 controller.go:162] cert-manager/certificates-readiness "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" I0320 00:46:10.978773 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-20 00:46:10.978767624 +0000 UTC m=+23.570147787 I0320 00:46:10.989006 1 controller.go:162] cert-manager/certificates-issuing "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" I0320 00:46:11.000061 1 controller.go:162] cert-manager/certificates-readiness "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" I0320 00:46:11.000341 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-20 00:46:11.000334884 +0000 UTC m=+23.591715067 I0320 00:46:11.022713 1 controller.go:162] cert-manager/certificates-key-manager "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" I0320 00:46:11.144526 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-control-plane-serving-cert-slnfc" condition "Approved" to 2026-03-20 00:46:11.144513258 +0000 UTC m=+23.735893431 I0320 00:46:11.215154 1 conditions.go:96] Setting lastTransitionTime for Issuer "capo-selfsigned-issuer" condition "Ready" to 2026-03-20 00:46:11.215140786 +0000 UTC m=+23.806520959 I0320 00:46:11.231491 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Ready" to 2026-03-20 00:46:11.231478013 +0000 UTC m=+23.822858216 I0320 00:46:11.231760 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="capo-system/capo-serving-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0320 00:46:11.231776 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Issuing" to 2026-03-20 00:46:11.231771514 +0000 UTC m=+23.823151717 I0320 00:46:11.384865 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-control-plane-serving-cert-slnfc" condition "Ready" to 2026-03-20 00:46:11.384848463 +0000 UTC m=+23.976228636 I0320 00:46:11.489624 1 controller.go:162] cert-manager/certificates-trigger "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capo-system/capo-serving-cert" I0320 00:46:11.489700 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="capo-system/capo-serving-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0320 00:46:11.489714 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Issuing" to 2026-03-20 00:46:11.489710398 +0000 UTC m=+24.081090571 I0320 00:46:11.740013 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-20 00:46:11.739998477 +0000 UTC m=+24.331378650 I0320 00:46:11.894923 1 controller.go:162] cert-manager/certificates-issuing "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" I0320 00:46:12.200125 1 controller.go:162] cert-manager/certificates-key-manager "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" I0320 00:46:12.389866 1 controller.go:162] cert-manager/certificates-key-manager "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capo-system/capo-serving-cert" I0320 00:46:12.448144 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capo-serving-cert-77zrr" condition "Approved" to 2026-03-20 00:46:12.448129547 +0000 UTC m=+25.039509740 I0320 00:46:12.555151 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capo-serving-cert-77zrr" condition "Ready" to 2026-03-20 00:46:12.555142549 +0000 UTC m=+25.146522732 I0320 00:46:12.991090 1 conditions.go:192] Found status change for Certificate "capo-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-20 00:46:12.991071508 +0000 UTC m=+25.582451721 I0320 00:46:13.140715 1 controller.go:162] cert-manager/certificates-readiness "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capo-system/capo-serving-cert" I0320 00:46:13.141190 1 conditions.go:192] Found status change for Certificate "capo-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-20 00:46:13.141182587 +0000 UTC m=+25.732562780 I0320 00:46:13.393560 1 controller.go:162] cert-manager/certificates-key-manager "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capo-system/capo-serving-cert" E0320 00:47:23.015680 1 controller.go:137] cert-manager/issuers "msg"="issuer in work queue no longer exists" "error"="issuer.cert-manager.io \"capi-selfsigned-issuer\" not found" I0320 00:47:23.064130 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-selfsigned-issuer" condition "Ready" to 2026-03-20 00:47:23.064115832 +0000 UTC m=+95.655496015 I0320 00:47:23.084333 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Ready" to 2026-03-20 00:47:23.084322046 +0000 UTC m=+95.675702229 E0320 00:47:25.075577 1 controller.go:137] cert-manager/issuers "msg"="issuer in work queue no longer exists" "error"="issuer.cert-manager.io \"capi-kubeadm-bootstrap-selfsigned-issuer\" not found" I0320 00:47:25.117427 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-kubeadm-bootstrap-selfsigned-issuer" condition "Ready" to 2026-03-20 00:47:25.11738178 +0000 UTC m=+97.708761983 I0320 00:47:25.135710 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready" to 2026-03-20 00:47:25.135701213 +0000 UTC m=+97.727081426 E0320 00:47:26.687368 1 controller.go:137] cert-manager/issuers "msg"="issuer in work queue no longer exists" "error"="issuer.cert-manager.io \"capi-kubeadm-control-plane-selfsigned-issuer\" not found" I0320 00:47:26.735673 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-kubeadm-control-plane-selfsigned-issuer" condition "Ready" to 2026-03-20 00:47:26.735660743 +0000 UTC m=+99.327040916 I0320 00:47:26.754951 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready" to 2026-03-20 00:47:26.754937851 +0000 UTC m=+99.346318034 E0320 00:47:28.427854 1 controller.go:137] cert-manager/issuers "msg"="issuer in work queue no longer exists" "error"="issuer.cert-manager.io \"capo-selfsigned-issuer\" not found" I0320 00:47:28.456192 1 conditions.go:96] Setting lastTransitionTime for Issuer "capo-selfsigned-issuer" condition "Ready" to 2026-03-20 00:47:28.456179201 +0000 UTC m=+101.047559414 I0320 00:47:28.475158 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Ready" to 2026-03-20 00:47:28.47515008 +0000 UTC m=+101.066530253