I0520 20:57:21.247248 1 feature_gate.go:249] feature gates: &{map[AdditionalCertificateOutputFormats:true]} I0520 20:57:21.247437 1 start.go:75] cert-manager "msg"="starting controller" "git-commit"="b1d501c85d97afd2adde2e86c2b119ac060caece" "version"="v1.11.5" I0520 20:57:21.247494 1 controller.go:242] cert-manager/controller/build-context "msg"="configured acme dns01 nameservers" "nameservers"=["10.96.0.10:53"] W0520 20:57:21.247588 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0520 20:57:21.249004 1 controller.go:70] cert-manager/controller "msg"="enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" I0520 20:57:21.249414 1 controller.go:134] cert-manager/controller "msg"="starting leader election" I0520 20:57:21.249614 1 controller.go:91] cert-manager/controller "msg"="starting metrics server" "address"={"IP":"::","Port":9402,"Zone":""} I0520 20:57:21.250446 1 leaderelection.go:248] attempting to acquire leader lease cert-manager/cert-manager-controller... I0520 20:57:21.267143 1 leaderelection.go:258] successfully acquired lease cert-manager/cert-manager-controller I0520 20:57:21.268625 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="challenges" I0520 20:57:21.269511 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificaterequests-issuer-ca" I0520 20:57:21.272457 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificaterequests-issuer-venafi" I0520 20:57:21.273611 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-issuing" I0520 20:57:21.273800 1 controller.go:182] cert-manager/controller "msg"="not starting controller as it's disabled" "controller"="gateway-shim" I0520 20:57:21.273945 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-readiness" I0520 20:57:21.276326 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificaterequests-issuer-vault" I0520 20:57:21.277283 1 controller.go:182] cert-manager/controller "msg"="not starting controller as it's disabled" "controller"="certificatesigningrequests-issuer-selfsigned" I0520 20:57:21.277485 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-revision-manager" I0520 20:57:21.277878 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="clusterissuers" I0520 20:57:21.278420 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="issuers" I0520 20:57:21.278818 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="ingress-shim" I0520 20:57:21.279290 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificaterequests-approver" I0520 20:57:21.279601 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificaterequests-issuer-selfsigned" I0520 20:57:21.280022 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-key-manager" I0520 20:57:21.280658 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-metrics" I0520 20:57:21.281039 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-request-manager" I0520 20:57:21.281519 1 controller.go:182] cert-manager/controller "msg"="not starting controller as it's disabled" "controller"="certificatesigningrequests-issuer-acme" I0520 20:57:21.281549 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-trigger" I0520 20:57:21.282295 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="orders" I0520 20:57:21.282578 1 controller.go:182] cert-manager/controller "msg"="not starting controller as it's disabled" "controller"="certificatesigningrequests-issuer-venafi" I0520 20:57:21.282599 1 controller.go:182] cert-manager/controller "msg"="not starting controller as it's disabled" "controller"="certificatesigningrequests-issuer-ca" I0520 20:57:21.282610 1 controller.go:182] cert-manager/controller "msg"="not starting controller as it's disabled" "controller"="certificatesigningrequests-issuer-vault" I0520 20:57:21.282641 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificaterequests-issuer-acme" I0520 20:57:47.128941 1 conditions.go:96] Setting lastTransitionTime for Issuer "test-selfsigned" condition "Ready" to 2026-05-20 20:57:47.128904564 +0000 UTC m=+25.920290473 I0520 20:57:47.149659 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="cert-manager-test/selfsigned-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0520 20:57:47.149737 1 conditions.go:203] Setting lastTransitionTime for Certificate "selfsigned-cert" condition "Issuing" to 2026-05-20 20:57:47.149728354 +0000 UTC m=+25.941114273 I0520 20:57:47.150064 1 conditions.go:203] Setting lastTransitionTime for Certificate "selfsigned-cert" condition "Ready" to 2026-05-20 20:57:47.150050241 +0000 UTC m=+25.941436130 E0520 20:57:47.166637 1 event.go:267] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"selfsigned-cert.18b1619fe552b97c", GenerateName:"", Namespace:"cert-manager-test", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Certificate", Namespace:"cert-manager-test", Name:"selfsigned-cert", UID:"78d7f925-9c7c-4096-82d1-3d662c9dd127", APIVersion:"cert-manager.io/v1", ResourceVersion:"1348", FieldPath:""}, Reason:"Issuing", Message:"Issuing certificate as Secret does not exist", Source:v1.EventSource{Component:"cert-manager-certificates-trigger", Host:""}, FirstTimestamp:time.Date(2026, time.May, 20, 20, 57, 47, 163154812, time.Local), LastTimestamp:time.Date(2026, time.May, 20, 20, 57, 47, 163154812, time.Local), Count:1, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "selfsigned-cert.18b1619fe552b97c" is forbidden: unable to create new content in namespace cert-manager-test because it is being terminated' (will not retry!) I0520 20:57:47.169924 1 controller.go:162] cert-manager/certificates-readiness "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"selfsigned-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="cert-manager-test/selfsigned-cert" I0520 20:57:47.170029 1 conditions.go:203] Setting lastTransitionTime for Certificate "selfsigned-cert" condition "Ready" to 2026-05-20 20:57:47.170020214 +0000 UTC m=+25.961406093 E0520 20:57:47.170879 1 controller.go:137] cert-manager/issuers "msg"="issuer in work queue no longer exists" "error"="issuer.cert-manager.io \"test-selfsigned\" not found" E0520 20:57:47.178366 1 controller.go:167] cert-manager/certificates-readiness "msg"="re-queuing item due to error processing" "error"="certificates.cert-manager.io \"selfsigned-cert\" not found" "key"="cert-manager-test/selfsigned-cert" I0520 20:57:47.202494 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-selfsigned-issuer" condition "Ready" to 2026-05-20 20:57:47.202480056 +0000 UTC m=+25.993865945 I0520 20:57:47.216871 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="capi-system/capi-serving-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0520 20:57:47.216894 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Issuing" to 2026-05-20 20:57:47.216890434 +0000 UTC m=+26.008276323 I0520 20:57:47.217169 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Ready" to 2026-05-20 20:57:47.217165319 +0000 UTC m=+26.008551208 I0520 20:57:47.237639 1 controller.go:162] cert-manager/certificates-trigger "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-system/capi-serving-cert" I0520 20:57:47.237773 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="capi-system/capi-serving-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0520 20:57:47.237805 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Issuing" to 2026-05-20 20:57:47.237797107 +0000 UTC m=+26.029183026 E0520 20:57:47.400318 1 controller.go:167] cert-manager/certificates-key-manager "msg"="re-queuing item due to error processing" "error"="secrets \"selfsigned-cert-\" is forbidden: unable to create new content in namespace cert-manager-test because it is being terminated" "key"="cert-manager-test/selfsigned-cert" I0520 20:57:47.530392 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-serving-cert-7pgwd" condition "Approved" to 2026-05-20 20:57:47.530381878 +0000 UTC m=+26.321767777 I0520 20:57:47.610232 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-serving-cert-7pgwd" condition "Ready" to 2026-05-20 20:57:47.61022212 +0000 UTC m=+26.401607999 I0520 20:57:47.664665 1 conditions.go:192] Found status change for Certificate "capi-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-20 20:57:47.664650825 +0000 UTC m=+26.456036704 I0520 20:57:47.686257 1 controller.go:162] cert-manager/certificates-readiness "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-system/capi-serving-cert" I0520 20:57:47.688455 1 conditions.go:192] Found status change for Certificate "capi-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-20 20:57:47.688447778 +0000 UTC m=+26.479833667 I0520 20:57:47.705243 1 controller.go:162] cert-manager/certificates-readiness "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-system/capi-serving-cert" I0520 20:57:47.707632 1 conditions.go:192] Found status change for Certificate "capi-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-20 20:57:47.707623764 +0000 UTC m=+26.499009653 I0520 20:57:47.780179 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-kubeadm-bootstrap-selfsigned-issuer" condition "Ready" to 2026-05-20 20:57:47.780157774 +0000 UTC m=+26.571543683 I0520 20:57:47.795738 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready" to 2026-05-20 20:57:47.795728357 +0000 UTC m=+26.587114276 I0520 20:57:47.795908 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0520 20:57:47.795950 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Issuing" to 2026-05-20 20:57:47.795938261 +0000 UTC m=+26.587324180 I0520 20:57:47.816353 1 controller.go:162] cert-manager/certificates-readiness "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" I0520 20:57:47.816455 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready" to 2026-05-20 20:57:47.816446955 +0000 UTC m=+26.607832844 I0520 20:57:48.137507 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-kubeadm-control-plane-selfsigned-issuer" condition "Ready" to 2026-05-20 20:57:48.137483265 +0000 UTC m=+26.928869174 I0520 20:57:48.154508 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0520 20:57:48.154537 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Issuing" to 2026-05-20 20:57:48.154530334 +0000 UTC m=+26.945916203 I0520 20:57:48.154824 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready" to 2026-05-20 20:57:48.15482029 +0000 UTC m=+26.946206169 I0520 20:57:48.185095 1 controller.go:162] cert-manager/certificates-trigger "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" I0520 20:57:48.185878 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0520 20:57:48.185917 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Issuing" to 2026-05-20 20:57:48.185909106 +0000 UTC m=+26.977295025 I0520 20:57:48.238743 1 controller.go:162] cert-manager/certificates-key-manager "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" I0520 20:57:48.271466 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-bootstrap-serving-cert-wpmps" condition "Approved" to 2026-05-20 20:57:48.271452886 +0000 UTC m=+27.062838765 I0520 20:57:48.298496 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-bootstrap-serving-cert-wpmps" condition "Ready" to 2026-05-20 20:57:48.298483219 +0000 UTC m=+27.089869118 I0520 20:57:48.345215 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-20 20:57:48.345182894 +0000 UTC m=+27.136568783 I0520 20:57:48.409043 1 controller.go:162] cert-manager/certificates-issuing "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" I0520 20:57:48.488319 1 controller.go:162] cert-manager/certificates-key-manager "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" I0520 20:57:48.558184 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-control-plane-serving-cert-tlsgf" condition "Approved" to 2026-05-20 20:57:48.558164091 +0000 UTC m=+27.349549970 I0520 20:57:48.595878 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-control-plane-serving-cert-tlsgf" condition "Ready" to 2026-05-20 20:57:48.595867242 +0000 UTC m=+27.387253121 I0520 20:57:48.625452 1 conditions.go:96] Setting lastTransitionTime for Issuer "capo-selfsigned-issuer" condition "Ready" to 2026-05-20 20:57:48.625440028 +0000 UTC m=+27.416825907 I0520 20:57:48.637658 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="capo-system/capo-serving-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0520 20:57:48.637741 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Issuing" to 2026-05-20 20:57:48.637736829 +0000 UTC m=+27.429122718 I0520 20:57:48.637876 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Ready" to 2026-05-20 20:57:48.637857131 +0000 UTC m=+27.429243010 I0520 20:57:48.844451 1 controller.go:162] cert-manager/certificates-readiness "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capo-system/capo-serving-cert" I0520 20:57:48.844549 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Ready" to 2026-05-20 20:57:48.8445424 +0000 UTC m=+27.635928289 I0520 20:57:48.903756 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-20 20:57:48.90373965 +0000 UTC m=+27.695125529 I0520 20:57:49.094457 1 controller.go:162] cert-manager/certificates-readiness "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" I0520 20:57:49.094818 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-20 20:57:49.09481224 +0000 UTC m=+27.886198119 I0520 20:57:49.338384 1 controller.go:162] cert-manager/certificates-issuing "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" I0520 20:57:49.399762 1 controller.go:162] cert-manager/certificates-key-manager "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" I0520 20:57:49.546145 1 controller.go:162] cert-manager/certificates-key-manager "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capo-system/capo-serving-cert" I0520 20:57:49.704937 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capo-serving-cert-btjjl" condition "Approved" to 2026-05-20 20:57:49.704920004 +0000 UTC m=+28.496305893 I0520 20:57:49.919863 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capo-serving-cert-btjjl" condition "Ready" to 2026-05-20 20:57:49.919852533 +0000 UTC m=+28.711238412 I0520 20:57:50.293145 1 conditions.go:192] Found status change for Certificate "capo-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-20 20:57:50.293128563 +0000 UTC m=+29.084514452 I0520 20:57:50.392191 1 controller.go:162] cert-manager/certificates-readiness "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capo-system/capo-serving-cert" I0520 20:57:50.392820 1 conditions.go:192] Found status change for Certificate "capo-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-20 20:57:50.392810848 +0000 UTC m=+29.184196737 I0520 20:57:50.639622 1 controller.go:162] cert-manager/certificates-issuing "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capo-system/capo-serving-cert" I0520 20:57:50.692382 1 controller.go:162] cert-manager/certificates-key-manager "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capo-system/capo-serving-cert" E0520 20:58:52.630728 1 controller.go:137] cert-manager/issuers "msg"="issuer in work queue no longer exists" "error"="issuer.cert-manager.io \"capi-selfsigned-issuer\" not found" I0520 20:58:52.675485 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-selfsigned-issuer" condition "Ready" to 2026-05-20 20:58:52.675470863 +0000 UTC m=+91.466856772 I0520 20:58:52.698543 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Ready" to 2026-05-20 20:58:52.698527135 +0000 UTC m=+91.489913034 E0520 20:58:54.868431 1 controller.go:137] cert-manager/issuers "msg"="issuer in work queue no longer exists" "error"="issuer.cert-manager.io \"capi-kubeadm-bootstrap-selfsigned-issuer\" not found" I0520 20:58:54.924231 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-kubeadm-bootstrap-selfsigned-issuer" condition "Ready" to 2026-05-20 20:58:54.924217394 +0000 UTC m=+93.715603283 I0520 20:58:54.951977 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready" to 2026-05-20 20:58:54.951959865 +0000 UTC m=+93.743345754 E0520 20:58:56.718429 1 controller.go:137] cert-manager/issuers "msg"="issuer in work queue no longer exists" "error"="issuer.cert-manager.io \"capi-kubeadm-control-plane-selfsigned-issuer\" not found" I0520 20:58:56.774698 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-kubeadm-control-plane-selfsigned-issuer" condition "Ready" to 2026-05-20 20:58:56.774681169 +0000 UTC m=+95.566067058 I0520 20:58:56.799200 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready" to 2026-05-20 20:58:56.79918861 +0000 UTC m=+95.590574499 E0520 20:58:58.577976 1 controller.go:137] cert-manager/issuers "msg"="issuer in work queue no longer exists" "error"="issuer.cert-manager.io \"capo-selfsigned-issuer\" not found" I0520 20:58:58.618236 1 conditions.go:96] Setting lastTransitionTime for Issuer "capo-selfsigned-issuer" condition "Ready" to 2026-05-20 20:58:58.618215818 +0000 UTC m=+97.409601727 I0520 20:58:58.637682 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Ready" to 2026-05-20 20:58:58.6376667 +0000 UTC m=+97.429052589