I0330 15:23:57.275054 1 controller.go:284] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0330 15:23:57.275324 1 client_config.go:659] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0330 15:23:57.290569 1 options.go:259] "enabling the sig-network Gateway API certificate-shim and HTTP-01 solver" logger="cert-manager" I0330 15:23:57.290620 1 controller.go:89] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers gateway-shim ingress-shim issuers orders]" logger="cert-manager.controller" I0330 15:23:57.290636 1 controller.go:435] "serving insecurely as tls certificate data not provided" logger="cert-manager.controller" I0330 15:23:57.290649 1 controller.go:102] "listening for insecure connections" logger="cert-manager.controller" address="0.0.0.0:9402" I0330 15:23:57.291069 1 controller.go:178] "starting leader election" logger="cert-manager.controller" I0330 15:23:57.291139 1 controller.go:127] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0330 15:23:57.291157 1 controller.go:171] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0330 15:23:57.295934 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0330 15:23:57.307822 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0330 15:23:57.317137 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0330 15:23:57.320764 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0330 15:23:57.324884 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0330 15:23:57.328570 1 controller.go:225] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0330 15:23:57.328677 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0330 15:23:57.333164 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0330 15:23:57.338989 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0330 15:23:57.342736 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="orders" I0330 15:23:57.347137 1 controller.go:225] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0330 15:23:57.347160 1 controller.go:225] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0330 15:23:57.347403 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0330 15:23:57.351072 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0330 15:23:57.354315 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0330 15:23:57.358290 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0330 15:23:57.363840 1 controller.go:225] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0330 15:23:57.363986 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0330 15:23:57.367679 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="issuers" I0330 15:23:57.371306 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="gateway-shim" I0330 15:23:57.375077 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0330 15:23:57.379836 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0330 15:23:57.383419 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0330 15:23:57.387958 1 controller.go:225] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0330 15:23:57.388028 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0330 15:23:57.395774 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="challenges" I0330 15:23:57.398820 1 reflector.go:359] Caches populated for *v1.HTTPRoute from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0330 15:23:57.399491 1 reflector.go:359] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0330 15:23:57.399935 1 reflector.go:359] Caches populated for *v1.Gateway from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0330 15:23:57.400016 1 reflector.go:359] Caches populated for *v1.Certificate from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0330 15:23:57.400212 1 reflector.go:359] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0330 15:23:57.400440 1 reflector.go:359] Caches populated for *v1.Ingress from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0330 15:23:57.400613 1 reflector.go:359] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0330 15:23:57.401507 1 reflector.go:359] Caches populated for *v1.Secret from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0330 15:23:57.409172 1 reflector.go:359] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0330 15:23:57.424064 1 reflector.go:359] Caches populated for *v1.Issuer from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0330 15:23:57.435054 1 reflector.go:359] Caches populated for *v1.Order from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0330 15:23:57.454107 1 reflector.go:359] Caches populated for *v1.Challenge from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0330 15:23:57.467012 1 reflector.go:359] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0330 15:24:12.339864 1 conditions.go:96] Setting lastTransitionTime for Issuer "test-selfsigned" condition "Ready" to 2026-03-30 15:24:12.339825892 +0000 UTC m=+15.091126817 I0330 15:24:12.352474 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="cert-manager-test/selfsigned-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0330 15:24:12.352519 1 conditions.go:203] Setting lastTransitionTime for Certificate "selfsigned-cert" condition "Issuing" to 2026-03-30 15:24:12.35251307 +0000 UTC m=+15.103813975 I0330 15:24:12.352628 1 conditions.go:203] Setting lastTransitionTime for Certificate "selfsigned-cert" condition "Ready" to 2026-03-30 15:24:12.352616083 +0000 UTC m=+15.103916998 I0330 15:24:12.368430 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="cert-manager-test/selfsigned-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"selfsigned-cert\": the object has been modified; please apply your changes to the latest version and try again" I0330 15:24:12.368509 1 conditions.go:203] Setting lastTransitionTime for Certificate "selfsigned-cert" condition "Ready" to 2026-03-30 15:24:12.368501679 +0000 UTC m=+15.119802584 E0330 15:24:12.371257 1 controller.go:134] "issuer in work queue no longer exists" err="issuer.cert-manager.io \"test-selfsigned\" not found" logger="cert-manager.controller" I0330 15:24:12.403780 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-selfsigned-issuer" condition "Ready" to 2026-03-30 15:24:12.403765997 +0000 UTC m=+15.155066902 I0330 15:24:12.414022 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Ready" to 2026-03-30 15:24:12.414010419 +0000 UTC m=+15.165311344 I0330 15:24:12.418832 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="capi-system/capi-serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0330 15:24:12.418884 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Issuing" to 2026-03-30 15:24:12.418877763 +0000 UTC m=+15.170178668 I0330 15:24:12.428154 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capi-system/capi-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0330 15:24:12.428272 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="capi-system/capi-serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0330 15:24:12.428311 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Issuing" to 2026-03-30 15:24:12.428300741 +0000 UTC m=+15.179601686 E0330 15:24:12.642539 1 controller.go:162] "re-queuing item due to error processing" err="secrets \"selfsigned-cert-\" is forbidden: unable to create new content in namespace cert-manager-test because it is being terminated" logger="cert-manager.controller" key="cert-manager-test/selfsigned-cert" I0330 15:24:12.676220 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capi-system/capi-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0330 15:24:12.696040 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-serving-cert-1" condition "Approved" to 2026-03-30 15:24:12.696029474 +0000 UTC m=+15.447330379 I0330 15:24:12.728903 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-serving-cert-1" condition "Ready" to 2026-03-30 15:24:12.728891466 +0000 UTC m=+15.480192371 I0330 15:24:12.767410 1 conditions.go:192] Found status change for Certificate "capi-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-30 15:24:12.767399514 +0000 UTC m=+15.518700429 I0330 15:24:12.808230 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capi-system/capi-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0330 15:24:12.873364 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capi-system/capi-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0330 15:24:14.920197 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-kubeadm-bootstrap-selfsigned-issuer" condition "Ready" to 2026-03-30 15:24:14.920186306 +0000 UTC m=+17.671487221 I0330 15:24:14.933729 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready" to 2026-03-30 15:24:14.933716364 +0000 UTC m=+17.685017279 I0330 15:24:14.933839 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0330 15:24:14.933875 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Issuing" to 2026-03-30 15:24:14.933867468 +0000 UTC m=+17.685168383 I0330 15:24:14.946046 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0330 15:24:14.946108 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0330 15:24:14.946137 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Issuing" to 2026-03-30 15:24:14.946126903 +0000 UTC m=+17.697427818 I0330 15:24:15.166359 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-bootstrap-serving-cert-1" condition "Approved" to 2026-03-30 15:24:15.166349393 +0000 UTC m=+17.917650288 I0330 15:24:15.221323 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-kubeadm-control-plane-selfsigned-issuer" condition "Ready" to 2026-03-30 15:24:15.221311078 +0000 UTC m=+17.972611983 I0330 15:24:15.233116 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-bootstrap-serving-cert-1" condition "Ready" to 2026-03-30 15:24:15.233103268 +0000 UTC m=+17.984404173 I0330 15:24:15.235172 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0330 15:24:15.236898 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready" to 2026-03-30 15:24:15.23689253 +0000 UTC m=+17.988193435 I0330 15:24:15.239606 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Issuing" to 2026-03-30 15:24:15.239587694 +0000 UTC m=+17.990888619 I0330 15:24:15.251214 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0330 15:24:15.258404 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0330 15:24:15.258452 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Issuing" to 2026-03-30 15:24:15.258443377 +0000 UTC m=+18.009744292 I0330 15:24:15.277200 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-30 15:24:15.277191506 +0000 UTC m=+18.028492411 I0330 15:24:15.297341 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0330 15:24:15.355078 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0330 15:24:16.119748 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-control-plane-serving-cert-1" condition "Approved" to 2026-03-30 15:24:16.119689204 +0000 UTC m=+18.870990119 I0330 15:24:16.135835 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-control-plane-serving-cert-1" condition "Ready" to 2026-03-30 15:24:16.13582338 +0000 UTC m=+18.887124295 I0330 15:24:16.163598 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-30 15:24:16.163586172 +0000 UTC m=+18.914887087 I0330 15:24:16.183753 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0330 15:24:16.219810 1 conditions.go:96] Setting lastTransitionTime for Issuer "capo-selfsigned-issuer" condition "Ready" to 2026-03-30 15:24:16.219796185 +0000 UTC m=+18.971097090 I0330 15:24:16.238993 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="capo-system/capo-serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0330 15:24:16.239041 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Issuing" to 2026-03-30 15:24:16.239029326 +0000 UTC m=+18.990330261 I0330 15:24:16.240363 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Ready" to 2026-03-30 15:24:16.240357762 +0000 UTC m=+18.991658667 I0330 15:24:16.253511 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capo-system/capo-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0330 15:24:16.253587 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="capo-system/capo-serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0330 15:24:16.253612 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Issuing" to 2026-03-30 15:24:16.25360447 +0000 UTC m=+19.004905375 I0330 15:24:16.260500 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0330 15:24:16.544819 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capo-serving-cert-1" condition "Approved" to 2026-03-30 15:24:16.544803628 +0000 UTC m=+19.296104533 I0330 15:24:16.568553 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capo-serving-cert-1" condition "Ready" to 2026-03-30 15:24:16.568543302 +0000 UTC m=+19.319844207 I0330 15:24:16.873997 1 conditions.go:192] Found status change for Certificate "capo-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-30 15:24:16.873985755 +0000 UTC m=+19.625286660 I0330 15:24:16.911975 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capo-system/capo-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0330 15:24:16.912507 1 conditions.go:192] Found status change for Certificate "capo-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-30 15:24:16.912500508 +0000 UTC m=+19.663801423 I0330 15:24:16.959729 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capo-system/capo-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" E0330 15:25:31.339873 1 controller.go:134] "issuer in work queue no longer exists" err="issuer.cert-manager.io \"capi-selfsigned-issuer\" not found" logger="cert-manager.controller" I0330 15:25:31.677793 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-selfsigned-issuer" condition "Ready" to 2026-03-30 15:25:31.677770295 +0000 UTC m=+94.429071230 I0330 15:25:32.333695 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Ready" to 2026-03-30 15:25:32.333678237 +0000 UTC m=+95.084979152 E0330 15:25:34.816788 1 controller.go:134] "issuer in work queue no longer exists" err="issuer.cert-manager.io \"capi-kubeadm-bootstrap-selfsigned-issuer\" not found" logger="cert-manager.controller" I0330 15:25:34.854254 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-kubeadm-bootstrap-selfsigned-issuer" condition "Ready" to 2026-03-30 15:25:34.854236752 +0000 UTC m=+97.605537667 I0330 15:25:34.870706 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready" to 2026-03-30 15:25:34.870693301 +0000 UTC m=+97.621994226 E0330 15:25:36.417187 1 controller.go:134] "issuer in work queue no longer exists" err="issuer.cert-manager.io \"capi-kubeadm-control-plane-selfsigned-issuer\" not found" logger="cert-manager.controller" I0330 15:25:36.472556 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-kubeadm-control-plane-selfsigned-issuer" condition "Ready" to 2026-03-30 15:25:36.472537773 +0000 UTC m=+99.223838688 I0330 15:25:36.494581 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready" to 2026-03-30 15:25:36.494529247 +0000 UTC m=+99.245830162 E0330 15:25:38.748810 1 controller.go:134] "issuer in work queue no longer exists" err="issuer.cert-manager.io \"capo-selfsigned-issuer\" not found" logger="cert-manager.controller" I0330 15:25:38.779898 1 conditions.go:96] Setting lastTransitionTime for Issuer "capo-selfsigned-issuer" condition "Ready" to 2026-03-30 15:25:38.779884098 +0000 UTC m=+101.531185013 I0330 15:25:38.800442 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Ready" to 2026-03-30 15:25:38.800427248 +0000 UTC m=+101.551728193