I0513 01:31:47.130871 1 feature_gate.go:249] feature gates: &{map[AdditionalCertificateOutputFormats:true]} I0513 01:31:47.131066 1 start.go:75] cert-manager "msg"="starting controller" "git-commit"="b1d501c85d97afd2adde2e86c2b119ac060caece" "version"="v1.11.5" I0513 01:31:47.131131 1 controller.go:242] cert-manager/controller/build-context "msg"="configured acme dns01 nameservers" "nameservers"=["10.96.0.10:53"] W0513 01:31:47.131244 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0513 01:31:47.133183 1 controller.go:70] cert-manager/controller "msg"="enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" I0513 01:31:47.133638 1 controller.go:134] cert-manager/controller "msg"="starting leader election" I0513 01:31:47.133747 1 controller.go:91] cert-manager/controller "msg"="starting metrics server" "address"={"IP":"::","Port":9402,"Zone":""} I0513 01:31:47.134399 1 leaderelection.go:248] attempting to acquire leader lease cert-manager/cert-manager-controller... I0513 01:31:47.147310 1 leaderelection.go:258] successfully acquired lease cert-manager/cert-manager-controller I0513 01:31:47.148210 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificaterequests-issuer-venafi" I0513 01:31:47.148516 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-readiness" I0513 01:31:47.148943 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-request-manager" I0513 01:31:47.149311 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-revision-manager" I0513 01:31:47.149665 1 controller.go:182] cert-manager/controller "msg"="not starting controller as it's disabled" "controller"="certificatesigningrequests-issuer-selfsigned" I0513 01:31:47.149690 1 controller.go:182] cert-manager/controller "msg"="not starting controller as it's disabled" "controller"="gateway-shim" I0513 01:31:47.149932 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-trigger" I0513 01:31:47.150604 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificaterequests-issuer-acme" I0513 01:31:47.151160 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="clusterissuers" I0513 01:31:47.151650 1 controller.go:182] cert-manager/controller "msg"="not starting controller as it's disabled" "controller"="certificatesigningrequests-issuer-venafi" I0513 01:31:47.151775 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-metrics" I0513 01:31:47.152255 1 controller.go:182] cert-manager/controller "msg"="not starting controller as it's disabled" "controller"="certificatesigningrequests-issuer-acme" I0513 01:31:47.152313 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificaterequests-issuer-selfsigned" I0513 01:31:47.155052 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="challenges" I0513 01:31:47.157392 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificaterequests-issuer-ca" I0513 01:31:47.158817 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificaterequests-approver" I0513 01:31:47.159394 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificaterequests-issuer-vault" I0513 01:31:47.160108 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-issuing" I0513 01:31:47.160594 1 controller.go:182] cert-manager/controller "msg"="not starting controller as it's disabled" "controller"="certificatesigningrequests-issuer-ca" I0513 01:31:47.160631 1 controller.go:182] cert-manager/controller "msg"="not starting controller as it's disabled" "controller"="certificatesigningrequests-issuer-vault" I0513 01:31:47.160677 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-key-manager" I0513 01:31:47.161299 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="orders" I0513 01:31:47.162119 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="ingress-shim" I0513 01:31:47.163008 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="issuers" I0513 01:32:11.537372 1 conditions.go:96] Setting lastTransitionTime for Issuer "test-selfsigned" condition "Ready" to 2026-05-13 01:32:11.537342427 +0000 UTC m=+24.440850284 I0513 01:32:11.551428 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="cert-manager-test/selfsigned-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0513 01:32:11.551464 1 conditions.go:203] Setting lastTransitionTime for Certificate "selfsigned-cert" condition "Issuing" to 2026-05-13 01:32:11.551456372 +0000 UTC m=+24.454964259 I0513 01:32:11.552857 1 conditions.go:203] Setting lastTransitionTime for Certificate "selfsigned-cert" condition "Ready" to 2026-05-13 01:32:11.551299058 +0000 UTC m=+24.454806925 E0513 01:32:11.567487 1 event.go:267] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"selfsigned-cert.18aefbf4c592fa72", GenerateName:"", Namespace:"cert-manager-test", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Certificate", Namespace:"cert-manager-test", Name:"selfsigned-cert", UID:"40580350-6863-458e-88aa-1fefd3d98041", APIVersion:"cert-manager.io/v1", ResourceVersion:"1307", FieldPath:""}, Reason:"Issuing", Message:"Issuing certificate as Secret does not exist", Source:v1.EventSource{Component:"cert-manager-certificates-trigger", Host:""}, FirstTimestamp:time.Date(2026, time.May, 13, 1, 32, 11, 563260530, time.Local), LastTimestamp:time.Date(2026, time.May, 13, 1, 32, 11, 563260530, time.Local), Count:1, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "selfsigned-cert.18aefbf4c592fa72" is forbidden: unable to create new content in namespace cert-manager-test because it is being terminated' (will not retry!) I0513 01:32:11.570096 1 controller.go:162] cert-manager/certificates-readiness "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"selfsigned-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="cert-manager-test/selfsigned-cert" I0513 01:32:11.570344 1 conditions.go:203] Setting lastTransitionTime for Certificate "selfsigned-cert" condition "Ready" to 2026-05-13 01:32:11.570337199 +0000 UTC m=+24.473845066 E0513 01:32:11.575417 1 controller.go:137] cert-manager/issuers "msg"="issuer in work queue no longer exists" "error"="issuer.cert-manager.io \"test-selfsigned\" not found" I0513 01:32:11.600813 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-selfsigned-issuer" condition "Ready" to 2026-05-13 01:32:11.600800267 +0000 UTC m=+24.504308124 I0513 01:32:11.611075 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Ready" to 2026-05-13 01:32:11.611068025 +0000 UTC m=+24.514575872 I0513 01:32:11.611431 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="capi-system/capi-serving-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0513 01:32:11.611444 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Issuing" to 2026-05-13 01:32:11.611442485 +0000 UTC m=+24.514950332 I0513 01:32:11.626081 1 controller.go:162] cert-manager/certificates-readiness "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-system/capi-serving-cert" I0513 01:32:11.626184 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Ready" to 2026-05-13 01:32:11.626178366 +0000 UTC m=+24.529686213 I0513 01:32:11.810237 1 controller.go:162] cert-manager/certificates-key-manager "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-system/capi-serving-cert" E0513 01:32:11.895147 1 controller.go:167] cert-manager/certificates-key-manager "msg"="re-queuing item due to error processing" "error"="secrets \"selfsigned-cert-\" is forbidden: unable to create new content in namespace cert-manager-test because it is being terminated" "key"="cert-manager-test/selfsigned-cert" I0513 01:32:11.911386 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-serving-cert-x4sfc" condition "Approved" to 2026-05-13 01:32:11.911377396 +0000 UTC m=+24.814885233 I0513 01:32:11.948994 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-serving-cert-x4sfc" condition "Ready" to 2026-05-13 01:32:11.948973934 +0000 UTC m=+24.852481781 I0513 01:32:11.989000 1 conditions.go:192] Found status change for Certificate "capi-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-13 01:32:11.988987492 +0000 UTC m=+24.892495379 I0513 01:32:12.020087 1 controller.go:162] cert-manager/certificates-readiness "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-system/capi-serving-cert" I0513 01:32:12.020432 1 conditions.go:192] Found status change for Certificate "capi-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-13 01:32:12.020425689 +0000 UTC m=+24.923933546 I0513 01:32:12.035606 1 controller.go:162] cert-manager/certificates-readiness "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-system/capi-serving-cert" I0513 01:32:12.035811 1 conditions.go:192] Found status change for Certificate "capi-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-13 01:32:12.035806302 +0000 UTC m=+24.939314149 I0513 01:32:12.161314 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-kubeadm-bootstrap-selfsigned-issuer" condition "Ready" to 2026-05-13 01:32:12.161301949 +0000 UTC m=+25.064809806 I0513 01:32:12.171633 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0513 01:32:12.171664 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Issuing" to 2026-05-13 01:32:12.171658186 +0000 UTC m=+25.075166053 I0513 01:32:12.171697 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready" to 2026-05-13 01:32:12.171678957 +0000 UTC m=+25.075186834 I0513 01:32:12.191489 1 controller.go:162] cert-manager/certificates-readiness "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" I0513 01:32:12.191553 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready" to 2026-05-13 01:32:12.191547842 +0000 UTC m=+25.095055689 I0513 01:32:12.520634 1 controller.go:162] cert-manager/certificates-key-manager "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" I0513 01:32:12.522195 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-kubeadm-control-plane-selfsigned-issuer" condition "Ready" to 2026-05-13 01:32:12.522179798 +0000 UTC m=+25.425687645 I0513 01:32:12.543360 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready" to 2026-05-13 01:32:12.543348545 +0000 UTC m=+25.446856392 I0513 01:32:12.543369 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0513 01:32:12.543577 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Issuing" to 2026-05-13 01:32:12.543566 +0000 UTC m=+25.447073887 I0513 01:32:12.560972 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-bootstrap-serving-cert-cqqhf" condition "Approved" to 2026-05-13 01:32:12.560964203 +0000 UTC m=+25.464472050 I0513 01:32:12.566348 1 controller.go:162] cert-manager/certificates-trigger "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" I0513 01:32:12.566574 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0513 01:32:12.566680 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Issuing" to 2026-05-13 01:32:12.566674506 +0000 UTC m=+25.470182363 I0513 01:32:12.590373 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-bootstrap-serving-cert-cqqhf" condition "Ready" to 2026-05-13 01:32:12.590363166 +0000 UTC m=+25.493871023 I0513 01:32:12.666723 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-13 01:32:12.666715758 +0000 UTC m=+25.570223605 I0513 01:32:12.710195 1 controller.go:162] cert-manager/certificates-issuing "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" I0513 01:32:12.926507 1 conditions.go:96] Setting lastTransitionTime for Issuer "capo-selfsigned-issuer" condition "Ready" to 2026-05-13 01:32:12.926490218 +0000 UTC m=+25.829998095 I0513 01:32:12.938265 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="capo-system/capo-serving-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0513 01:32:12.938271 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Ready" to 2026-05-13 01:32:12.93823306 +0000 UTC m=+25.841740917 I0513 01:32:12.938293 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Issuing" to 2026-05-13 01:32:12.938287771 +0000 UTC m=+25.841795618 I0513 01:32:12.959593 1 controller.go:162] cert-manager/certificates-trigger "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capo-system/capo-serving-cert" I0513 01:32:12.959702 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="capo-system/capo-serving-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0513 01:32:12.959716 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Issuing" to 2026-05-13 01:32:12.959713195 +0000 UTC m=+25.863221042 I0513 01:32:13.027417 1 controller.go:162] cert-manager/certificates-key-manager "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" I0513 01:32:13.032651 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-control-plane-serving-cert-hcvlm" condition "Approved" to 2026-05-13 01:32:13.032643183 +0000 UTC m=+25.936151030 I0513 01:32:13.095492 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-control-plane-serving-cert-hcvlm" condition "Ready" to 2026-05-13 01:32:13.09548114 +0000 UTC m=+25.998988987 I0513 01:32:13.504434 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-13 01:32:13.504421835 +0000 UTC m=+26.407929692 I0513 01:32:13.744240 1 controller.go:162] cert-manager/certificates-readiness "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" I0513 01:32:13.745282 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-13 01:32:13.745272393 +0000 UTC m=+26.648780270 I0513 01:32:13.748038 1 controller.go:162] cert-manager/certificates-key-manager "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capo-system/capo-serving-cert" I0513 01:32:13.814602 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capo-serving-cert-s9jjs" condition "Approved" to 2026-05-13 01:32:13.814589509 +0000 UTC m=+26.718097366 I0513 01:32:14.265964 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capo-serving-cert-s9jjs" condition "Ready" to 2026-05-13 01:32:14.265955412 +0000 UTC m=+27.169463269 I0513 01:32:14.350175 1 controller.go:162] cert-manager/certificates-key-manager "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" I0513 01:32:14.655024 1 conditions.go:192] Found status change for Certificate "capo-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-13 01:32:14.655004304 +0000 UTC m=+27.558512191 I0513 01:32:14.748820 1 controller.go:162] cert-manager/certificates-issuing "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capo-system/capo-serving-cert" E0513 01:33:20.031043 1 controller.go:137] cert-manager/issuers "msg"="issuer in work queue no longer exists" "error"="issuer.cert-manager.io \"capi-selfsigned-issuer\" not found" I0513 01:33:20.069280 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-selfsigned-issuer" condition "Ready" to 2026-05-13 01:33:20.069259109 +0000 UTC m=+92.972767006 I0513 01:33:20.089608 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Ready" to 2026-05-13 01:33:20.089591592 +0000 UTC m=+92.993099449 E0513 01:33:22.114599 1 controller.go:137] cert-manager/issuers "msg"="issuer in work queue no longer exists" "error"="issuer.cert-manager.io \"capi-kubeadm-bootstrap-selfsigned-issuer\" not found" I0513 01:33:22.164086 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-kubeadm-bootstrap-selfsigned-issuer" condition "Ready" to 2026-05-13 01:33:22.164072583 +0000 UTC m=+95.067580430 I0513 01:33:22.181874 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready" to 2026-05-13 01:33:22.181858671 +0000 UTC m=+95.085366548 E0513 01:33:23.674305 1 controller.go:137] cert-manager/issuers "msg"="issuer in work queue no longer exists" "error"="issuer.cert-manager.io \"capi-kubeadm-control-plane-selfsigned-issuer\" not found" I0513 01:33:23.718572 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-kubeadm-control-plane-selfsigned-issuer" condition "Ready" to 2026-05-13 01:33:23.718555569 +0000 UTC m=+96.622063456 I0513 01:33:23.737625 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready" to 2026-05-13 01:33:23.737613891 +0000 UTC m=+96.641121748 E0513 01:33:25.306842 1 controller.go:137] cert-manager/issuers "msg"="issuer in work queue no longer exists" "error"="issuer.cert-manager.io \"capo-selfsigned-issuer\" not found" I0513 01:33:25.359995 1 conditions.go:96] Setting lastTransitionTime for Issuer "capo-selfsigned-issuer" condition "Ready" to 2026-05-13 01:33:25.359983484 +0000 UTC m=+98.263491351 I0513 01:33:25.382865 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Ready" to 2026-05-13 01:33:25.382850558 +0000 UTC m=+98.286358425