I0317 19:50:25.301283 1 feature_gate.go:249] feature gates: &{map[AdditionalCertificateOutputFormats:true]} I0317 19:50:25.301439 1 start.go:75] cert-manager "msg"="starting controller" "git-commit"="b1d501c85d97afd2adde2e86c2b119ac060caece" "version"="v1.11.5" I0317 19:50:25.301529 1 controller.go:242] cert-manager/controller/build-context "msg"="configured acme dns01 nameservers" "nameservers"=["10.96.0.10:53"] W0317 19:50:25.301646 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0317 19:50:25.303199 1 controller.go:70] cert-manager/controller "msg"="enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" I0317 19:50:25.303675 1 controller.go:134] cert-manager/controller "msg"="starting leader election" I0317 19:50:25.304309 1 controller.go:91] cert-manager/controller "msg"="starting metrics server" "address"={"IP":"::","Port":9402,"Zone":""} I0317 19:50:25.304556 1 leaderelection.go:248] attempting to acquire leader lease cert-manager/cert-manager-controller... I0317 19:50:25.318220 1 leaderelection.go:258] successfully acquired lease cert-manager/cert-manager-controller I0317 19:50:25.320204 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificaterequests-issuer-ca" I0317 19:50:25.322746 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificaterequests-issuer-vault" I0317 19:50:25.323995 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-metrics" I0317 19:50:25.325245 1 controller.go:182] cert-manager/controller "msg"="not starting controller as it's disabled" "controller"="certificatesigningrequests-issuer-ca" I0317 19:50:25.325268 1 controller.go:182] cert-manager/controller "msg"="not starting controller as it's disabled" "controller"="certificatesigningrequests-issuer-selfsigned" I0317 19:50:25.325282 1 controller.go:182] cert-manager/controller "msg"="not starting controller as it's disabled" "controller"="gateway-shim" I0317 19:50:25.325420 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-readiness" I0317 19:50:25.326673 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificaterequests-approver" I0317 19:50:25.326799 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificaterequests-issuer-selfsigned" I0317 19:50:25.327178 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificaterequests-issuer-venafi" I0317 19:50:25.327913 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-issuing" I0317 19:50:25.328602 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-trigger" I0317 19:50:25.329142 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="challenges" I0317 19:50:25.329686 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="ingress-shim" I0317 19:50:25.330029 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-request-manager" I0317 19:50:25.330490 1 controller.go:182] cert-manager/controller "msg"="not starting controller as it's disabled" "controller"="certificatesigningrequests-issuer-venafi" I0317 19:50:25.330548 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-revision-manager" I0317 19:50:25.331471 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="clusterissuers" I0317 19:50:25.331707 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="orders" I0317 19:50:25.331973 1 controller.go:182] cert-manager/controller "msg"="not starting controller as it's disabled" "controller"="certificatesigningrequests-issuer-vault" I0317 19:50:25.332085 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-key-manager" I0317 19:50:25.332421 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="issuers" I0317 19:50:25.332575 1 controller.go:182] cert-manager/controller "msg"="not starting controller as it's disabled" "controller"="certificatesigningrequests-issuer-acme" I0317 19:50:25.332617 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificaterequests-issuer-acme" I0317 19:50:41.563568 1 conditions.go:96] Setting lastTransitionTime for Issuer "test-selfsigned" condition "Ready" to 2026-03-17 19:50:41.563532878 +0000 UTC m=+16.304420170 I0317 19:50:41.573882 1 conditions.go:203] Setting lastTransitionTime for Certificate "selfsigned-cert" condition "Ready" to 2026-03-17 19:50:41.573873293 +0000 UTC m=+16.314760565 I0317 19:50:41.574092 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="cert-manager-test/selfsigned-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0317 19:50:41.574208 1 conditions.go:203] Setting lastTransitionTime for Certificate "selfsigned-cert" condition "Issuing" to 2026-03-17 19:50:41.574204172 +0000 UTC m=+16.315091444 E0317 19:50:41.588621 1 event.go:267] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"selfsigned-cert.189db8d24a866659", GenerateName:"", Namespace:"cert-manager-test", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Certificate", Namespace:"cert-manager-test", Name:"selfsigned-cert", UID:"ca174c13-d7a0-427d-839c-9fbf5b5741e2", APIVersion:"cert-manager.io/v1", ResourceVersion:"974", FieldPath:""}, Reason:"Issuing", Message:"Issuing certificate as Secret does not exist", Source:v1.EventSource{Component:"cert-manager-certificates-trigger", Host:""}, FirstTimestamp:time.Date(2026, time.March, 17, 19, 50, 41, 586808409, time.Local), LastTimestamp:time.Date(2026, time.March, 17, 19, 50, 41, 586808409, time.Local), Count:1, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "selfsigned-cert.189db8d24a866659" is forbidden: unable to create new content in namespace cert-manager-test because it is being terminated' (will not retry!) I0317 19:50:41.591494 1 controller.go:162] cert-manager/certificates-readiness "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"selfsigned-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="cert-manager-test/selfsigned-cert" I0317 19:50:41.591546 1 conditions.go:203] Setting lastTransitionTime for Certificate "selfsigned-cert" condition "Ready" to 2026-03-17 19:50:41.59154185 +0000 UTC m=+16.332429122 E0317 19:50:41.595888 1 controller.go:137] cert-manager/issuers "msg"="issuer in work queue no longer exists" "error"="issuer.cert-manager.io \"test-selfsigned\" not found" I0317 19:50:41.628737 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-selfsigned-issuer" condition "Ready" to 2026-03-17 19:50:41.628724104 +0000 UTC m=+16.369611376 I0317 19:50:41.641166 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="capi-system/capi-serving-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0317 19:50:41.641181 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Ready" to 2026-03-17 19:50:41.641171127 +0000 UTC m=+16.382058399 I0317 19:50:41.641193 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Issuing" to 2026-03-17 19:50:41.641189148 +0000 UTC m=+16.382076420 I0317 19:50:41.656002 1 controller.go:162] cert-manager/certificates-trigger "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-system/capi-serving-cert" I0317 19:50:41.656066 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="capi-system/capi-serving-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0317 19:50:41.656083 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Issuing" to 2026-03-17 19:50:41.656077208 +0000 UTC m=+16.396964480 E0317 19:50:41.738917 1 controller.go:167] cert-manager/certificates-key-manager "msg"="re-queuing item due to error processing" "error"="secrets \"selfsigned-cert-\" is forbidden: unable to create new content in namespace cert-manager-test because it is being terminated" "key"="cert-manager-test/selfsigned-cert" I0317 19:50:42.033996 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-serving-cert-8sz2d" condition "Approved" to 2026-03-17 19:50:42.033986993 +0000 UTC m=+16.774874255 I0317 19:50:42.066327 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-serving-cert-8sz2d" condition "Ready" to 2026-03-17 19:50:42.066319165 +0000 UTC m=+16.807206427 I0317 19:50:42.093232 1 conditions.go:192] Found status change for Certificate "capi-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-17 19:50:42.093222767 +0000 UTC m=+16.834110039 I0317 19:50:42.114387 1 controller.go:162] cert-manager/certificates-readiness "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-system/capi-serving-cert" I0317 19:50:42.114704 1 conditions.go:192] Found status change for Certificate "capi-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-17 19:50:42.114698503 +0000 UTC m=+16.855585785 I0317 19:50:42.136363 1 controller.go:162] cert-manager/certificates-readiness "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-system/capi-serving-cert" I0317 19:50:42.137214 1 conditions.go:192] Found status change for Certificate "capi-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-17 19:50:42.137206356 +0000 UTC m=+16.878093628 I0317 19:50:42.151279 1 controller.go:162] cert-manager/certificates-key-manager "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-system/capi-serving-cert" I0317 19:50:42.206819 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-kubeadm-bootstrap-selfsigned-issuer" condition "Ready" to 2026-03-17 19:50:42.206807114 +0000 UTC m=+16.947694386 I0317 19:50:42.226817 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready" to 2026-03-17 19:50:42.226806599 +0000 UTC m=+16.967693881 I0317 19:50:42.227446 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0317 19:50:42.232727 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Issuing" to 2026-03-17 19:50:42.2327104 +0000 UTC m=+16.973597662 I0317 19:50:42.269193 1 controller.go:162] cert-manager/certificates-readiness "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" I0317 19:50:42.269274 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready" to 2026-03-17 19:50:42.269268026 +0000 UTC m=+17.010155278 I0317 19:50:42.469389 1 controller.go:162] cert-manager/certificates-key-manager "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" I0317 19:50:42.517998 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-bootstrap-serving-cert-58qvk" condition "Approved" to 2026-03-17 19:50:42.517991276 +0000 UTC m=+17.258878538 I0317 19:50:42.545602 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-bootstrap-serving-cert-58qvk" condition "Ready" to 2026-03-17 19:50:42.545591278 +0000 UTC m=+17.286478540 I0317 19:50:42.545832 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-kubeadm-control-plane-selfsigned-issuer" condition "Ready" to 2026-03-17 19:50:42.545823555 +0000 UTC m=+17.286710817 I0317 19:50:42.559313 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0317 19:50:42.559392 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Issuing" to 2026-03-17 19:50:42.559386605 +0000 UTC m=+17.300273877 I0317 19:50:42.559541 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready" to 2026-03-17 19:50:42.559534799 +0000 UTC m=+17.300422071 I0317 19:50:42.587482 1 controller.go:162] cert-manager/certificates-trigger "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" I0317 19:50:42.590693 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0317 19:50:42.590755 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Issuing" to 2026-03-17 19:50:42.59075059 +0000 UTC m=+17.331637852 I0317 19:50:42.629223 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-17 19:50:42.629209668 +0000 UTC m=+17.370096940 I0317 19:50:42.652714 1 controller.go:162] cert-manager/certificates-issuing "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" I0317 19:50:42.805916 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-control-plane-serving-cert-rjb5t" condition "Approved" to 2026-03-17 19:50:42.805903484 +0000 UTC m=+17.546790756 I0317 19:50:42.842968 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-control-plane-serving-cert-rjb5t" condition "Ready" to 2026-03-17 19:50:42.842954124 +0000 UTC m=+17.583841386 I0317 19:50:42.936759 1 conditions.go:96] Setting lastTransitionTime for Issuer "capo-selfsigned-issuer" condition "Ready" to 2026-03-17 19:50:42.93674605 +0000 UTC m=+17.677633332 I0317 19:50:42.962561 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="capo-system/capo-serving-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0317 19:50:42.962613 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Issuing" to 2026-03-17 19:50:42.962607586 +0000 UTC m=+17.703494858 I0317 19:50:42.962617 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Ready" to 2026-03-17 19:50:42.962605916 +0000 UTC m=+17.703493178 I0317 19:50:43.276745 1 controller.go:162] cert-manager/certificates-readiness "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capo-system/capo-serving-cert" I0317 19:50:43.276832 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Ready" to 2026-03-17 19:50:43.276824652 +0000 UTC m=+18.017711954 I0317 19:50:43.332465 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-17 19:50:43.332453522 +0000 UTC m=+18.073340794 I0317 19:50:43.526867 1 controller.go:162] cert-manager/certificates-readiness "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" I0317 19:50:43.527998 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-17 19:50:43.527990874 +0000 UTC m=+18.268878136 I0317 19:50:43.781078 1 controller.go:162] cert-manager/certificates-key-manager "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" I0317 19:50:43.827017 1 controller.go:162] cert-manager/certificates-issuing "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" I0317 19:50:44.041905 1 controller.go:162] cert-manager/certificates-key-manager "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capo-system/capo-serving-cert" I0317 19:50:44.137440 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capo-serving-cert-zk7c2" condition "Approved" to 2026-03-17 19:50:44.137428481 +0000 UTC m=+18.878315753 I0317 19:50:44.395822 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capo-serving-cert-zk7c2" condition "Ready" to 2026-03-17 19:50:44.395812245 +0000 UTC m=+19.136699517 I0317 19:50:44.680318 1 conditions.go:192] Found status change for Certificate "capo-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-17 19:50:44.680302335 +0000 UTC m=+19.421189627 I0317 19:50:44.830807 1 controller.go:162] cert-manager/certificates-readiness "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capo-system/capo-serving-cert" I0317 19:50:44.831065 1 conditions.go:192] Found status change for Certificate "capo-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-17 19:50:44.831061098 +0000 UTC m=+19.571948360 I0317 19:50:45.024763 1 controller.go:162] cert-manager/certificates-key-manager "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capo-system/capo-serving-cert" E0317 19:51:54.450401 1 controller.go:137] cert-manager/issuers "msg"="issuer in work queue no longer exists" "error"="issuer.cert-manager.io \"capi-selfsigned-issuer\" not found" I0317 19:51:54.505468 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-selfsigned-issuer" condition "Ready" to 2026-03-17 19:51:54.505456854 +0000 UTC m=+89.246344126 I0317 19:51:54.524289 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Ready" to 2026-03-17 19:51:54.524275169 +0000 UTC m=+89.265162461 E0317 19:51:56.261205 1 controller.go:137] cert-manager/issuers "msg"="issuer in work queue no longer exists" "error"="issuer.cert-manager.io \"capi-kubeadm-bootstrap-selfsigned-issuer\" not found" I0317 19:51:56.308800 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-kubeadm-bootstrap-selfsigned-issuer" condition "Ready" to 2026-03-17 19:51:56.30878487 +0000 UTC m=+91.049672172 I0317 19:51:56.325148 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready" to 2026-03-17 19:51:56.325137406 +0000 UTC m=+91.066024668 E0317 19:51:57.626205 1 controller.go:137] cert-manager/issuers "msg"="issuer in work queue no longer exists" "error"="issuer.cert-manager.io \"capi-kubeadm-control-plane-selfsigned-issuer\" not found" I0317 19:51:57.676855 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-kubeadm-control-plane-selfsigned-issuer" condition "Ready" to 2026-03-17 19:51:57.676842139 +0000 UTC m=+92.417729401 I0317 19:51:57.702438 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready" to 2026-03-17 19:51:57.702424305 +0000 UTC m=+92.443311607 E0317 19:51:59.080505 1 controller.go:137] cert-manager/issuers "msg"="issuer in work queue no longer exists" "error"="issuer.cert-manager.io \"capo-selfsigned-issuer\" not found" I0317 19:51:59.120856 1 conditions.go:96] Setting lastTransitionTime for Issuer "capo-selfsigned-issuer" condition "Ready" to 2026-03-17 19:51:59.120841742 +0000 UTC m=+93.861729044 I0317 19:51:59.140633 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Ready" to 2026-03-17 19:51:59.140625391 +0000 UTC m=+93.881512663