I0608 12:22:43.403443 1 feature_gate.go:249] feature gates: &{map[AdditionalCertificateOutputFormats:true]} I0608 12:22:43.403646 1 start.go:75] cert-manager "msg"="starting controller" "git-commit"="b1d501c85d97afd2adde2e86c2b119ac060caece" "version"="v1.11.5" I0608 12:22:43.403705 1 controller.go:242] cert-manager/controller/build-context "msg"="configured acme dns01 nameservers" "nameservers"=["10.96.0.10:53"] W0608 12:22:43.403808 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0608 12:22:43.405349 1 controller.go:70] cert-manager/controller "msg"="enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" I0608 12:22:43.405794 1 controller.go:134] cert-manager/controller "msg"="starting leader election" I0608 12:22:43.406008 1 controller.go:91] cert-manager/controller "msg"="starting metrics server" "address"={"IP":"::","Port":9402,"Zone":""} I0608 12:22:43.406872 1 leaderelection.go:248] attempting to acquire leader lease cert-manager/cert-manager-controller... I0608 12:22:43.421564 1 leaderelection.go:258] successfully acquired lease cert-manager/cert-manager-controller I0608 12:22:43.422697 1 controller.go:182] cert-manager/controller "msg"="not starting controller as it's disabled" "controller"="gateway-shim" I0608 12:22:43.422804 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="orders" I0608 12:22:43.423532 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificaterequests-issuer-ca" I0608 12:22:43.424272 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificaterequests-issuer-selfsigned" I0608 12:22:43.428901 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-key-manager" I0608 12:22:43.430128 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-request-manager" I0608 12:22:43.431243 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificaterequests-issuer-acme" I0608 12:22:43.431708 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificaterequests-approver" I0608 12:22:43.432236 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificaterequests-issuer-vault" I0608 12:22:43.432757 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificaterequests-issuer-venafi" I0608 12:22:43.433188 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-metrics" I0608 12:22:43.433542 1 controller.go:182] cert-manager/controller "msg"="not starting controller as it's disabled" "controller"="certificatesigningrequests-issuer-acme" I0608 12:22:43.433564 1 controller.go:182] cert-manager/controller "msg"="not starting controller as it's disabled" "controller"="certificatesigningrequests-issuer-venafi" I0608 12:22:43.433637 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-trigger" I0608 12:22:43.434063 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="clusterissuers" I0608 12:22:43.434718 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="challenges" I0608 12:22:43.435266 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="ingress-shim" I0608 12:22:43.435712 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-issuing" I0608 12:22:43.436105 1 controller.go:182] cert-manager/controller "msg"="not starting controller as it's disabled" "controller"="certificatesigningrequests-issuer-selfsigned" I0608 12:22:43.436238 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-readiness" I0608 12:22:43.436644 1 controller.go:182] cert-manager/controller "msg"="not starting controller as it's disabled" "controller"="certificatesigningrequests-issuer-ca" I0608 12:22:43.436716 1 controller.go:182] cert-manager/controller "msg"="not starting controller as it's disabled" "controller"="certificatesigningrequests-issuer-vault" I0608 12:22:43.436687 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-revision-manager" I0608 12:22:43.437763 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="issuers" I0608 12:23:15.277818 1 conditions.go:96] Setting lastTransitionTime for Issuer "test-selfsigned" condition "Ready" to 2026-06-08 12:23:15.277783339 +0000 UTC m=+31.919394901 I0608 12:23:15.290896 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="cert-manager-test/selfsigned-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0608 12:23:15.290920 1 conditions.go:203] Setting lastTransitionTime for Certificate "selfsigned-cert" condition "Issuing" to 2026-06-08 12:23:15.290915271 +0000 UTC m=+31.932526813 I0608 12:23:15.290955 1 conditions.go:203] Setting lastTransitionTime for Certificate "selfsigned-cert" condition "Ready" to 2026-06-08 12:23:15.290943532 +0000 UTC m=+31.932555074 I0608 12:23:15.314150 1 controller.go:162] cert-manager/certificates-trigger "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"selfsigned-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="cert-manager-test/selfsigned-cert" I0608 12:23:15.314216 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="cert-manager-test/selfsigned-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0608 12:23:15.314228 1 conditions.go:203] Setting lastTransitionTime for Certificate "selfsigned-cert" condition "Issuing" to 2026-06-08 12:23:15.314223194 +0000 UTC m=+31.955834736 E0608 12:23:15.318119 1 controller.go:137] cert-manager/issuers "msg"="issuer in work queue no longer exists" "error"="issuer.cert-manager.io \"test-selfsigned\" not found" E0608 12:23:15.330670 1 event.go:267] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"selfsigned-cert.18b71a92c579a7b6", GenerateName:"", Namespace:"cert-manager-test", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Certificate", Namespace:"cert-manager-test", Name:"selfsigned-cert", UID:"52797531-0d72-4da1-96a4-745590147171", APIVersion:"cert-manager.io/v1", ResourceVersion:"1393", FieldPath:""}, Reason:"Issuing", Message:"Issuing certificate as Secret does not exist", Source:v1.EventSource{Component:"cert-manager-certificates-trigger", Host:""}, FirstTimestamp:time.Date(2026, time.June, 8, 12, 23, 15, 328952246, time.Local), LastTimestamp:time.Date(2026, time.June, 8, 12, 23, 15, 328952246, time.Local), Count:1, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "selfsigned-cert.18b71a92c579a7b6" is forbidden: unable to create new content in namespace cert-manager-test because it is being terminated' (will not retry!) I0608 12:23:15.355489 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-selfsigned-issuer" condition "Ready" to 2026-06-08 12:23:15.35544395 +0000 UTC m=+31.997055492 I0608 12:23:15.366439 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="capi-system/capi-serving-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0608 12:23:15.366529 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Issuing" to 2026-06-08 12:23:15.366524118 +0000 UTC m=+32.008135650 I0608 12:23:15.366423 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Ready" to 2026-06-08 12:23:15.366407004 +0000 UTC m=+32.008018546 I0608 12:23:15.382152 1 controller.go:162] cert-manager/certificates-trigger "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-system/capi-serving-cert" I0608 12:23:15.382245 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="capi-system/capi-serving-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0608 12:23:15.382288 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Issuing" to 2026-06-08 12:23:15.382282423 +0000 UTC m=+32.023893985 E0608 12:23:15.408012 1 controller.go:167] cert-manager/certificates-key-manager "msg"="re-queuing item due to error processing" "error"="secrets \"selfsigned-cert-\" is forbidden: unable to create new content in namespace cert-manager-test because it is being terminated" "key"="cert-manager-test/selfsigned-cert" I0608 12:23:15.666629 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-serving-cert-xh6cf" condition "Approved" to 2026-06-08 12:23:15.666620752 +0000 UTC m=+32.308232284 I0608 12:23:15.705784 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-serving-cert-xh6cf" condition "Ready" to 2026-06-08 12:23:15.705775293 +0000 UTC m=+32.347386835 I0608 12:23:15.759706 1 conditions.go:192] Found status change for Certificate "capi-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-08 12:23:15.759697529 +0000 UTC m=+32.401309061 I0608 12:23:15.785685 1 controller.go:162] cert-manager/certificates-issuing "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-system/capi-serving-cert" I0608 12:23:15.785943 1 controller.go:162] cert-manager/certificates-readiness "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-system/capi-serving-cert" I0608 12:23:15.786187 1 conditions.go:192] Found status change for Certificate "capi-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-08 12:23:15.786181531 +0000 UTC m=+32.427793063 I0608 12:23:15.804991 1 controller.go:162] cert-manager/certificates-readiness "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-system/capi-serving-cert" I0608 12:23:15.805206 1 conditions.go:192] Found status change for Certificate "capi-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-08 12:23:15.805199189 +0000 UTC m=+32.446810731 I0608 12:23:15.811321 1 controller.go:162] cert-manager/certificates-key-manager "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-system/capi-serving-cert" I0608 12:23:15.965528 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-kubeadm-bootstrap-selfsigned-issuer" condition "Ready" to 2026-06-08 12:23:15.965517799 +0000 UTC m=+32.607129331 I0608 12:23:15.980280 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready" to 2026-06-08 12:23:15.980272052 +0000 UTC m=+32.621883594 I0608 12:23:15.980670 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0608 12:23:15.982219 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Issuing" to 2026-06-08 12:23:15.981541572 +0000 UTC m=+32.623153144 I0608 12:23:15.996135 1 controller.go:162] cert-manager/certificates-readiness "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" I0608 12:23:15.996346 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready" to 2026-06-08 12:23:15.996335798 +0000 UTC m=+32.637947370 I0608 12:23:16.157827 1 controller.go:162] cert-manager/certificates-key-manager "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" I0608 12:23:16.206931 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-bootstrap-serving-cert-29psn" condition "Approved" to 2026-06-08 12:23:16.206919094 +0000 UTC m=+32.848530636 I0608 12:23:16.246199 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-bootstrap-serving-cert-29psn" condition "Ready" to 2026-06-08 12:23:16.246188006 +0000 UTC m=+32.887799538 I0608 12:23:16.296623 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-08 12:23:16.296611967 +0000 UTC m=+32.938223509 I0608 12:23:16.334499 1 controller.go:162] cert-manager/certificates-issuing "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" I0608 12:23:16.356696 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-kubeadm-control-plane-selfsigned-issuer" condition "Ready" to 2026-06-08 12:23:16.356684362 +0000 UTC m=+32.998295894 I0608 12:23:16.370197 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0608 12:23:16.370223 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Issuing" to 2026-06-08 12:23:16.370217706 +0000 UTC m=+33.011829248 I0608 12:23:16.370465 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready" to 2026-06-08 12:23:16.370461164 +0000 UTC m=+33.012072706 I0608 12:23:16.390910 1 controller.go:162] cert-manager/certificates-readiness "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" I0608 12:23:16.390966 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready" to 2026-06-08 12:23:16.390960227 +0000 UTC m=+33.032571769 I0608 12:23:16.703871 1 conditions.go:96] Setting lastTransitionTime for Issuer "capo-selfsigned-issuer" condition "Ready" to 2026-06-08 12:23:16.703860291 +0000 UTC m=+33.345471833 I0608 12:23:16.717803 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="capo-system/capo-serving-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0608 12:23:16.717838 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Issuing" to 2026-06-08 12:23:16.71783057 +0000 UTC m=+33.359442142 I0608 12:23:16.718218 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Ready" to 2026-06-08 12:23:16.718211852 +0000 UTC m=+33.359823424 I0608 12:23:16.744817 1 controller.go:162] cert-manager/certificates-trigger "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capo-system/capo-serving-cert" I0608 12:23:16.744870 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="capo-system/capo-serving-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0608 12:23:16.744884 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Issuing" to 2026-06-08 12:23:16.744880539 +0000 UTC m=+33.386492071 I0608 12:23:16.808755 1 controller.go:162] cert-manager/certificates-key-manager "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" I0608 12:23:16.909982 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-control-plane-serving-cert-2s668" condition "Approved" to 2026-06-08 12:23:16.909972006 +0000 UTC m=+33.551583528 I0608 12:23:16.974838 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-control-plane-serving-cert-2s668" condition "Ready" to 2026-06-08 12:23:16.974827882 +0000 UTC m=+33.616439424 I0608 12:23:17.349212 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-08 12:23:17.34920017 +0000 UTC m=+33.990811712 I0608 12:23:17.540860 1 controller.go:162] cert-manager/certificates-readiness "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" I0608 12:23:17.541201 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-08 12:23:17.541195899 +0000 UTC m=+34.182807431 I0608 12:23:17.597220 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capo-serving-cert-k6hd8" condition "Approved" to 2026-06-08 12:23:17.597206722 +0000 UTC m=+34.238818294 I0608 12:23:18.054337 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capo-serving-cert-k6hd8" condition "Ready" to 2026-06-08 12:23:18.054329596 +0000 UTC m=+34.695941138 I0608 12:23:18.141961 1 controller.go:162] cert-manager/certificates-key-manager "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" I0608 12:23:18.392647 1 conditions.go:192] Found status change for Certificate "capo-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-08 12:23:18.39262885 +0000 UTC m=+35.034240422 I0608 12:23:18.547183 1 controller.go:162] cert-manager/certificates-readiness "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capo-system/capo-serving-cert" I0608 12:23:18.548550 1 conditions.go:192] Found status change for Certificate "capo-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-08 12:23:18.54854441 +0000 UTC m=+35.190155942 I0608 12:23:18.739282 1 controller.go:162] cert-manager/certificates-key-manager "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capo-system/capo-serving-cert" E0608 12:24:48.177931 1 controller.go:137] cert-manager/issuers "msg"="issuer in work queue no longer exists" "error"="issuer.cert-manager.io \"capi-selfsigned-issuer\" not found" I0608 12:24:48.215588 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-selfsigned-issuer" condition "Ready" to 2026-06-08 12:24:48.215545194 +0000 UTC m=+124.857156736 I0608 12:24:48.238098 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Ready" to 2026-06-08 12:24:48.238086224 +0000 UTC m=+124.879697746 E0608 12:24:50.453097 1 controller.go:137] cert-manager/issuers "msg"="issuer in work queue no longer exists" "error"="issuer.cert-manager.io \"capi-kubeadm-bootstrap-selfsigned-issuer\" not found" I0608 12:24:50.494369 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-kubeadm-bootstrap-selfsigned-issuer" condition "Ready" to 2026-06-08 12:24:50.494348481 +0000 UTC m=+127.135960053 I0608 12:24:50.523352 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready" to 2026-06-08 12:24:50.52329554 +0000 UTC m=+127.164907082 E0608 12:24:52.173656 1 controller.go:137] cert-manager/issuers "msg"="issuer in work queue no longer exists" "error"="issuer.cert-manager.io \"capi-kubeadm-control-plane-selfsigned-issuer\" not found" I0608 12:24:52.222555 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-kubeadm-control-plane-selfsigned-issuer" condition "Ready" to 2026-06-08 12:24:52.222533334 +0000 UTC m=+128.864144906 I0608 12:24:52.246566 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready" to 2026-06-08 12:24:52.246550434 +0000 UTC m=+128.888161976 E0608 12:24:53.906339 1 controller.go:137] cert-manager/issuers "msg"="issuer in work queue no longer exists" "error"="issuer.cert-manager.io \"capo-selfsigned-issuer\" not found" I0608 12:24:53.948976 1 conditions.go:96] Setting lastTransitionTime for Issuer "capo-selfsigned-issuer" condition "Ready" to 2026-06-08 12:24:53.94895694 +0000 UTC m=+130.590568482 I0608 12:24:53.968830 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Ready" to 2026-06-08 12:24:53.968818224 +0000 UTC m=+130.610429766