I0330 16:46:54.918158 1 controller.go:284] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0330 16:46:54.918301 1 client_config.go:659] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0330 16:46:54.935651 1 options.go:259] "enabling the sig-network Gateway API certificate-shim and HTTP-01 solver" logger="cert-manager" I0330 16:46:54.935735 1 controller.go:89] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers gateway-shim ingress-shim issuers orders]" logger="cert-manager.controller" I0330 16:46:54.935787 1 controller.go:435] "serving insecurely as tls certificate data not provided" logger="cert-manager.controller" I0330 16:46:54.935797 1 controller.go:102] "listening for insecure connections" logger="cert-manager.controller" address="0.0.0.0:9402" I0330 16:46:54.936286 1 controller.go:178] "starting leader election" logger="cert-manager.controller" I0330 16:46:54.936336 1 controller.go:171] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0330 16:46:54.936475 1 controller.go:127] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0330 16:46:54.941180 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0330 16:46:54.947541 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0330 16:46:54.957602 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0330 16:46:54.961792 1 controller.go:225] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0330 16:46:54.961812 1 controller.go:225] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0330 16:46:54.961894 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="orders" I0330 16:46:54.965637 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="issuers" I0330 16:46:54.969342 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0330 16:46:54.974960 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0330 16:46:54.980701 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0330 16:46:54.983390 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0330 16:46:54.987460 1 controller.go:225] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0330 16:46:54.987501 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0330 16:46:54.992763 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="gateway-shim" I0330 16:46:54.994636 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0330 16:46:54.998714 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0330 16:46:55.006426 1 controller.go:225] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0330 16:46:55.006469 1 controller.go:225] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0330 16:46:55.006518 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0330 16:46:55.012096 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0330 16:46:55.015293 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0330 16:46:55.019194 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0330 16:46:55.023712 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0330 16:46:55.027833 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0330 16:46:55.034061 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="challenges" I0330 16:46:55.041659 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0330 16:46:55.042420 1 reflector.go:359] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0330 16:46:55.043733 1 reflector.go:359] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0330 16:46:55.044550 1 reflector.go:359] Caches populated for *v1.Ingress from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0330 16:46:55.044654 1 reflector.go:359] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0330 16:46:55.044887 1 reflector.go:359] Caches populated for *v1.Secret from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0330 16:46:55.046374 1 reflector.go:359] Caches populated for *v1.Issuer from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0330 16:46:55.046405 1 reflector.go:359] Caches populated for *v1.Gateway from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0330 16:46:55.047052 1 reflector.go:359] Caches populated for *v1.HTTPRoute from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0330 16:46:55.047243 1 reflector.go:359] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0330 16:46:55.047357 1 reflector.go:359] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0330 16:46:55.047375 1 reflector.go:359] Caches populated for *v1.Order from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0330 16:46:55.047641 1 reflector.go:359] Caches populated for *v1.Challenge from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0330 16:46:55.048307 1 reflector.go:359] Caches populated for *v1.Certificate from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0330 16:47:14.408246 1 conditions.go:96] Setting lastTransitionTime for Issuer "test-selfsigned" condition "Ready" to 2026-03-30 16:47:14.408209132 +0000 UTC m=+19.521707472 I0330 16:47:14.420184 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="cert-manager-test/selfsigned-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0330 16:47:14.420164 1 conditions.go:203] Setting lastTransitionTime for Certificate "selfsigned-cert" condition "Ready" to 2026-03-30 16:47:14.420151291 +0000 UTC m=+19.533649621 I0330 16:47:14.420212 1 conditions.go:203] Setting lastTransitionTime for Certificate "selfsigned-cert" condition "Issuing" to 2026-03-30 16:47:14.420207403 +0000 UTC m=+19.533705753 I0330 16:47:14.433393 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="cert-manager-test/selfsigned-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"selfsigned-cert\": the object has been modified; please apply your changes to the latest version and try again" I0330 16:47:14.433470 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="cert-manager-test/selfsigned-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0330 16:47:14.433495 1 conditions.go:203] Setting lastTransitionTime for Certificate "selfsigned-cert" condition "Issuing" to 2026-03-30 16:47:14.433488186 +0000 UTC m=+19.546986526 E0330 16:47:14.442194 1 controller.go:134] "issuer in work queue no longer exists" err="issuer.cert-manager.io \"test-selfsigned\" not found" logger="cert-manager.controller" I0330 16:47:14.471315 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-selfsigned-issuer" condition "Ready" to 2026-03-30 16:47:14.471300568 +0000 UTC m=+19.584798908 I0330 16:47:14.482029 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="capi-system/capi-serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0330 16:47:14.482063 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Issuing" to 2026-03-30 16:47:14.482055608 +0000 UTC m=+19.595553938 I0330 16:47:14.482192 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Ready" to 2026-03-30 16:47:14.482184072 +0000 UTC m=+19.595682432 I0330 16:47:14.491720 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capi-system/capi-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0330 16:47:14.491781 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="capi-system/capi-serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0330 16:47:14.491935 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Issuing" to 2026-03-30 16:47:14.491927017 +0000 UTC m=+19.605425367 E0330 16:47:14.622357 1 controller.go:162] "re-queuing item due to error processing" err="secrets \"selfsigned-cert-\" is forbidden: unable to create new content in namespace cert-manager-test because it is being terminated" logger="cert-manager.controller" key="cert-manager-test/selfsigned-cert" I0330 16:47:14.853755 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capi-system/capi-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0330 16:47:14.874154 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-serving-cert-1" condition "Approved" to 2026-03-30 16:47:14.874146527 +0000 UTC m=+19.987644857 I0330 16:47:14.904838 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-serving-cert-1" condition "Ready" to 2026-03-30 16:47:14.90482386 +0000 UTC m=+20.018322230 I0330 16:47:14.931358 1 conditions.go:192] Found status change for Certificate "capi-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-30 16:47:14.931346325 +0000 UTC m=+20.044844695 I0330 16:47:14.945124 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capi-system/capi-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0330 16:47:15.008806 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-kubeadm-bootstrap-selfsigned-issuer" condition "Ready" to 2026-03-30 16:47:15.00879492 +0000 UTC m=+20.122293260 I0330 16:47:15.024976 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0330 16:47:15.025050 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Issuing" to 2026-03-30 16:47:15.025040679 +0000 UTC m=+20.138539019 I0330 16:47:15.025483 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready" to 2026-03-30 16:47:15.025474553 +0000 UTC m=+20.138972903 I0330 16:47:15.036925 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0330 16:47:15.036998 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready" to 2026-03-30 16:47:15.036989564 +0000 UTC m=+20.150487894 I0330 16:47:15.315587 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-kubeadm-control-plane-selfsigned-issuer" condition "Ready" to 2026-03-30 16:47:15.315574388 +0000 UTC m=+20.429072728 I0330 16:47:15.335535 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0330 16:47:15.335575 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Issuing" to 2026-03-30 16:47:15.3355678 +0000 UTC m=+20.449066140 I0330 16:47:15.335638 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready" to 2026-03-30 16:47:15.335610571 +0000 UTC m=+20.449108901 I0330 16:47:15.350058 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0330 16:47:15.350115 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready" to 2026-03-30 16:47:15.350109833 +0000 UTC m=+20.463608163 I0330 16:47:15.381648 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0330 16:47:15.411737 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-bootstrap-serving-cert-1" condition "Approved" to 2026-03-30 16:47:15.411727605 +0000 UTC m=+20.525225925 I0330 16:47:15.429624 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-bootstrap-serving-cert-1" condition "Ready" to 2026-03-30 16:47:15.429584517 +0000 UTC m=+20.543082857 I0330 16:47:15.469059 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-30 16:47:15.469046095 +0000 UTC m=+20.582544425 I0330 16:47:15.482781 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0330 16:47:15.501794 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0330 16:47:15.503378 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-30 16:47:15.503371682 +0000 UTC m=+20.616870002 I0330 16:47:15.525304 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0330 16:47:15.525804 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-30 16:47:15.525797825 +0000 UTC m=+20.639296155 I0330 16:47:15.529625 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-control-plane-serving-cert-1" condition "Approved" to 2026-03-30 16:47:15.529613052 +0000 UTC m=+20.643111402 I0330 16:47:15.657975 1 conditions.go:96] Setting lastTransitionTime for Issuer "capo-selfsigned-issuer" condition "Ready" to 2026-03-30 16:47:15.657915255 +0000 UTC m=+20.771413615 I0330 16:47:15.694368 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="capo-system/capo-serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0330 16:47:15.694458 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Ready" to 2026-03-30 16:47:15.694437265 +0000 UTC m=+20.807935635 I0330 16:47:15.701954 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Issuing" to 2026-03-30 16:47:15.701945043 +0000 UTC m=+20.815443373 I0330 16:47:15.894965 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-control-plane-serving-cert-1" condition "Ready" to 2026-03-30 16:47:15.894954591 +0000 UTC m=+21.008452931 I0330 16:47:16.014013 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capo-system/capo-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0330 16:47:16.014867 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="capo-system/capo-serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0330 16:47:16.014907 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Issuing" to 2026-03-30 16:47:16.014901364 +0000 UTC m=+21.128399694 I0330 16:47:16.269872 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-30 16:47:16.269863455 +0000 UTC m=+21.383361785 I0330 16:47:16.419986 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0330 16:47:16.870014 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capo-system/capo-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0330 16:47:16.924196 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capo-serving-cert-1" condition "Approved" to 2026-03-30 16:47:16.924184819 +0000 UTC m=+22.037683149 I0330 16:47:16.978519 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capo-serving-cert-1" condition "Ready" to 2026-03-30 16:47:16.978508206 +0000 UTC m=+22.092006536 I0330 16:47:17.469318 1 conditions.go:192] Found status change for Certificate "capo-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-30 16:47:17.469308141 +0000 UTC m=+22.582806481 I0330 16:47:17.619794 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capo-system/capo-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0330 16:47:17.621265 1 conditions.go:192] Found status change for Certificate "capo-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-30 16:47:17.621247636 +0000 UTC m=+22.734745976 I0330 16:47:17.868435 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capo-system/capo-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0330 16:47:17.916652 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capo-system/capo-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" E0330 16:48:22.021559 1 controller.go:134] "issuer in work queue no longer exists" err="issuer.cert-manager.io \"capi-selfsigned-issuer\" not found" logger="cert-manager.controller" I0330 16:48:22.050715 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-selfsigned-issuer" condition "Ready" to 2026-03-30 16:48:22.050665709 +0000 UTC m=+87.164164049 I0330 16:48:22.069931 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Ready" to 2026-03-30 16:48:22.06991736 +0000 UTC m=+87.183415710 E0330 16:48:24.100128 1 controller.go:134] "issuer in work queue no longer exists" err="issuer.cert-manager.io \"capi-kubeadm-bootstrap-selfsigned-issuer\" not found" logger="cert-manager.controller" I0330 16:48:24.130863 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-kubeadm-bootstrap-selfsigned-issuer" condition "Ready" to 2026-03-30 16:48:24.130848744 +0000 UTC m=+89.244347084 I0330 16:48:24.149996 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready" to 2026-03-30 16:48:24.149983679 +0000 UTC m=+89.263482029 E0330 16:48:25.702592 1 controller.go:134] "issuer in work queue no longer exists" err="issuer.cert-manager.io \"capi-kubeadm-control-plane-selfsigned-issuer\" not found" logger="cert-manager.controller" I0330 16:48:25.749670 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-kubeadm-control-plane-selfsigned-issuer" condition "Ready" to 2026-03-30 16:48:25.749655168 +0000 UTC m=+90.863153508 I0330 16:48:25.768079 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready" to 2026-03-30 16:48:25.768064193 +0000 UTC m=+90.881562523 E0330 16:48:27.451579 1 controller.go:134] "issuer in work queue no longer exists" err="issuer.cert-manager.io \"capo-selfsigned-issuer\" not found" logger="cert-manager.controller" I0330 16:48:27.498546 1 conditions.go:96] Setting lastTransitionTime for Issuer "capo-selfsigned-issuer" condition "Ready" to 2026-03-30 16:48:27.498529245 +0000 UTC m=+92.612027585 I0330 16:48:27.517982 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Ready" to 2026-03-30 16:48:27.517951942 +0000 UTC m=+92.631450282