Name: cert-manager-67c7974877-9schf Namespace: cert-manager Priority: 0 Service Account: cert-manager Node: instance/199.19.213.66 Start Time: Mon, 30 Mar 2026 17:56:51 +0000 Labels: app=cert-manager app.kubernetes.io/component=controller app.kubernetes.io/instance=cert-manager app.kubernetes.io/managed-by=Helm app.kubernetes.io/name=cert-manager app.kubernetes.io/version=v1.15.5 helm.sh/chart=cert-manager-v1.15.5 pod-template-hash=67c7974877 Annotations: prometheus.io/path: /metrics prometheus.io/port: 9402 prometheus.io/scrape: true Status: Running SeccompProfile: RuntimeDefault IP: 10.0.0.252 IPs: IP: 10.0.0.252 Controlled By: ReplicaSet/cert-manager-67c7974877 Containers: cert-manager-controller: Container ID: containerd://4fcc29b60f6d384bef00bc1991e2bc03f015c35296fb4caa2cdb7a2554d130e7 Image: harbor.atmosphere.dev/quay.io/jetstack/cert-manager-controller:v1.12.17 Image ID: harbor.atmosphere.dev/quay.io/jetstack/cert-manager-controller@sha256:de51d939b7d79f99284181a98a36254735b265cc47aabcc4db4650c246c86dba Ports: 9402/TCP, 9403/TCP Host Ports: 0/TCP, 0/TCP Args: --v=2 --cluster-resource-namespace=$(POD_NAMESPACE) --leader-election-namespace=cert-manager --acme-http01-solver-image=harbor.atmosphere.dev/quay.io/jetstack/cert-manager-acmesolver:v1.12.17 --enable-gateway-api --max-concurrent-challenges=60 State: Waiting Reason: CrashLoopBackOff Last State: Terminated Reason: Error Exit Code: 1 Started: Mon, 30 Mar 2026 18:03:01 +0000 Finished: Mon, 30 Mar 2026 18:03:01 +0000 Ready: False Restart Count: 6 Liveness: http-get http://:http-healthz/livez delay=10s timeout=15s period=10s #success=1 #failure=8 Environment: POD_NAMESPACE: cert-manager (v1:metadata.namespace) Mounts: /etc/ssl/certs from etc-ssl-certs (ro) /var/run/secrets/kubernetes.io/serviceaccount from kube-api-access-788wk (ro) Conditions: Type Status Initialized True Ready False ContainersReady False PodScheduled True Volumes: etc-ssl-certs: Type: HostPath (bare host directory volume) Path: /etc/ssl/certs HostPathType: kube-api-access-788wk: Type: Projected (a volume that contains injected data from multiple sources) TokenExpirationSeconds: 3607 ConfigMapName: kube-root-ca.crt ConfigMapOptional: DownwardAPI: true QoS Class: BestEffort Node-Selectors: kubernetes.io/os=linux openstack-control-plane=enabled Tolerations: node.kubernetes.io/not-ready:NoExecute op=Exists for 300s node.kubernetes.io/unreachable:NoExecute op=Exists for 300s Events: Type Reason Age From Message ---- ------ ---- ---- ------- Normal Scheduled 10m default-scheduler Successfully assigned cert-manager/cert-manager-67c7974877-9schf to instance Normal Pulling 10m kubelet Pulling image "harbor.atmosphere.dev/quay.io/jetstack/cert-manager-controller:v1.12.17" Normal Pulled 10m kubelet Successfully pulled image "harbor.atmosphere.dev/quay.io/jetstack/cert-manager-controller:v1.12.17" in 1.129s (2.635s including waiting) Normal Created 9m42s (x4 over 10m) kubelet Created container cert-manager-controller Normal Started 9m42s (x4 over 10m) kubelet Started container cert-manager-controller Normal Pulled 8m48s (x4 over 10m) kubelet Container image "harbor.atmosphere.dev/quay.io/jetstack/cert-manager-controller:v1.12.17" already present on machine Warning BackOff 27s (x51 over 10m) kubelet Back-off restarting failed container cert-manager-controller in pod cert-manager-67c7974877-9schf_cert-manager(5f49c597-a0bf-4d80-a522-e8fccf1a4e0c)