I0416 18:22:07.440019 1 feature_gate.go:249] feature gates: &{map[AdditionalCertificateOutputFormats:true]} I0416 18:22:07.440284 1 start.go:75] cert-manager "msg"="starting controller" "git-commit"="b1d501c85d97afd2adde2e86c2b119ac060caece" "version"="v1.11.5" I0416 18:22:07.440382 1 controller.go:242] cert-manager/controller/build-context "msg"="configured acme dns01 nameservers" "nameservers"=["10.96.0.10:53"] W0416 18:22:07.440525 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0416 18:22:07.442556 1 controller.go:70] cert-manager/controller "msg"="enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" I0416 18:22:07.443654 1 controller.go:134] cert-manager/controller "msg"="starting leader election" I0416 18:22:07.444108 1 controller.go:91] cert-manager/controller "msg"="starting metrics server" "address"={"IP":"::","Port":9402,"Zone":""} I0416 18:22:07.444560 1 leaderelection.go:248] attempting to acquire leader lease cert-manager/cert-manager-controller... I0416 18:22:07.459802 1 leaderelection.go:258] successfully acquired lease cert-manager/cert-manager-controller I0416 18:22:07.461722 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificaterequests-issuer-acme" I0416 18:22:07.463896 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-issuing" I0416 18:22:07.464465 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="clusterissuers" I0416 18:22:07.465039 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="issuers" I0416 18:22:07.465955 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="challenges" I0416 18:22:07.466547 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="orders" I0416 18:22:07.468277 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificaterequests-issuer-selfsigned" I0416 18:22:07.469628 1 controller.go:182] cert-manager/controller "msg"="not starting controller as it's disabled" "controller"="certificatesigningrequests-issuer-venafi" I0416 18:22:07.469648 1 controller.go:182] cert-manager/controller "msg"="not starting controller as it's disabled" "controller"="gateway-shim" I0416 18:22:07.470074 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificaterequests-issuer-venafi" I0416 18:22:07.470319 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-readiness" I0416 18:22:07.471377 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificaterequests-approver" I0416 18:22:07.472134 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-key-manager" I0416 18:22:07.472699 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-metrics" I0416 18:22:07.473323 1 controller.go:182] cert-manager/controller "msg"="not starting controller as it's disabled" "controller"="certificatesigningrequests-issuer-ca" I0416 18:22:07.473364 1 controller.go:182] cert-manager/controller "msg"="not starting controller as it's disabled" "controller"="certificatesigningrequests-issuer-selfsigned" I0416 18:22:07.473381 1 controller.go:182] cert-manager/controller "msg"="not starting controller as it's disabled" "controller"="certificatesigningrequests-issuer-vault" I0416 18:22:07.473418 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-trigger" I0416 18:22:07.474448 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificaterequests-issuer-ca" I0416 18:22:07.475282 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificaterequests-issuer-vault" I0416 18:22:07.475787 1 controller.go:182] cert-manager/controller "msg"="not starting controller as it's disabled" "controller"="certificatesigningrequests-issuer-acme" I0416 18:22:07.475908 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-revision-manager" I0416 18:22:07.476716 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="ingress-shim" I0416 18:22:07.477728 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-request-manager" I0416 18:22:32.240650 1 conditions.go:96] Setting lastTransitionTime for Issuer "test-selfsigned" condition "Ready" to 2026-04-16 18:22:32.240617936 +0000 UTC m=+24.839715483 I0416 18:22:32.261399 1 conditions.go:203] Setting lastTransitionTime for Certificate "selfsigned-cert" condition "Ready" to 2026-04-16 18:22:32.26138726 +0000 UTC m=+24.860484807 I0416 18:22:32.262102 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="cert-manager-test/selfsigned-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0416 18:22:32.262137 1 conditions.go:203] Setting lastTransitionTime for Certificate "selfsigned-cert" condition "Issuing" to 2026-04-16 18:22:32.262130121 +0000 UTC m=+24.861227668 E0416 18:22:32.281703 1 event.go:267] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"selfsigned-cert.18a6e96bce824188", GenerateName:"", Namespace:"cert-manager-test", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Certificate", Namespace:"cert-manager-test", Name:"selfsigned-cert", UID:"a903a156-8da5-4e91-9eb7-5a5a5bdc153d", APIVersion:"cert-manager.io/v1", ResourceVersion:"1220", FieldPath:""}, Reason:"Issuing", Message:"Issuing certificate as Secret does not exist", Source:v1.EventSource{Component:"cert-manager-certificates-trigger", Host:""}, FirstTimestamp:time.Date(2026, time.April, 16, 18, 22, 32, 279654792, time.Local), LastTimestamp:time.Date(2026, time.April, 16, 18, 22, 32, 279654792, time.Local), Count:1, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "selfsigned-cert.18a6e96bce824188" is forbidden: unable to create new content in namespace cert-manager-test because it is being terminated' (will not retry!) I0416 18:22:32.283439 1 controller.go:162] cert-manager/certificates-readiness "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"selfsigned-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="cert-manager-test/selfsigned-cert" I0416 18:22:32.283496 1 conditions.go:203] Setting lastTransitionTime for Certificate "selfsigned-cert" condition "Ready" to 2026-04-16 18:22:32.283491842 +0000 UTC m=+24.882589389 E0416 18:22:32.290861 1 controller.go:137] cert-manager/issuers "msg"="issuer in work queue no longer exists" "error"="issuer.cert-manager.io \"test-selfsigned\" not found" I0416 18:22:32.327456 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-selfsigned-issuer" condition "Ready" to 2026-04-16 18:22:32.327441479 +0000 UTC m=+24.926539026 I0416 18:22:32.338944 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Ready" to 2026-04-16 18:22:32.338934978 +0000 UTC m=+24.938032535 I0416 18:22:32.339288 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="capi-system/capi-serving-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0416 18:22:32.339590 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Issuing" to 2026-04-16 18:22:32.339581886 +0000 UTC m=+24.938679443 I0416 18:22:32.356179 1 controller.go:162] cert-manager/certificates-readiness "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-system/capi-serving-cert" I0416 18:22:32.356240 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Ready" to 2026-04-16 18:22:32.356233893 +0000 UTC m=+24.955331430 E0416 18:22:32.459640 1 controller.go:167] cert-manager/certificates-key-manager "msg"="re-queuing item due to error processing" "error"="secrets \"selfsigned-cert-\" is forbidden: unable to create new content in namespace cert-manager-test because it is being terminated" "key"="cert-manager-test/selfsigned-cert" I0416 18:22:32.503758 1 controller.go:162] cert-manager/certificates-key-manager "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-system/capi-serving-cert" I0416 18:22:32.562396 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-serving-cert-vt566" condition "Approved" to 2026-04-16 18:22:32.562386248 +0000 UTC m=+25.161483785 I0416 18:22:32.622429 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-serving-cert-vt566" condition "Ready" to 2026-04-16 18:22:32.622416136 +0000 UTC m=+25.221513683 I0416 18:22:32.669080 1 conditions.go:192] Found status change for Certificate "capi-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 18:22:32.66905185 +0000 UTC m=+25.268149387 I0416 18:22:32.698502 1 controller.go:162] cert-manager/certificates-readiness "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-system/capi-serving-cert" I0416 18:22:32.698858 1 conditions.go:192] Found status change for Certificate "capi-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 18:22:32.698850851 +0000 UTC m=+25.297948388 I0416 18:22:32.735400 1 controller.go:162] cert-manager/certificates-key-manager "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-system/capi-serving-cert" I0416 18:22:32.946657 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-kubeadm-bootstrap-selfsigned-issuer" condition "Ready" to 2026-04-16 18:22:32.946638858 +0000 UTC m=+25.545736395 I0416 18:22:32.971247 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready" to 2026-04-16 18:22:32.971234541 +0000 UTC m=+25.570332078 I0416 18:22:32.971646 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0416 18:22:32.971657 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Issuing" to 2026-04-16 18:22:32.971654553 +0000 UTC m=+25.570752090 I0416 18:22:33.006684 1 controller.go:162] cert-manager/certificates-trigger "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" I0416 18:22:33.006897 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0416 18:22:33.006972 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Issuing" to 2026-04-16 18:22:33.006917913 +0000 UTC m=+25.606015450 I0416 18:22:33.324631 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-kubeadm-control-plane-selfsigned-issuer" condition "Ready" to 2026-04-16 18:22:33.324312427 +0000 UTC m=+25.923409974 I0416 18:22:33.345599 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready" to 2026-04-16 18:22:33.345583646 +0000 UTC m=+25.944681203 I0416 18:22:33.346111 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0416 18:22:33.346130 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Issuing" to 2026-04-16 18:22:33.346126011 +0000 UTC m=+25.945223558 I0416 18:22:33.372728 1 controller.go:162] cert-manager/certificates-trigger "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" I0416 18:22:33.376243 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0416 18:22:33.377616 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Issuing" to 2026-04-16 18:22:33.377608766 +0000 UTC m=+25.976706303 I0416 18:22:33.529690 1 controller.go:162] cert-manager/certificates-key-manager "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" I0416 18:22:33.566477 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-bootstrap-serving-cert-j4s7s" condition "Approved" to 2026-04-16 18:22:33.566467915 +0000 UTC m=+26.165565452 I0416 18:22:33.668524 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-bootstrap-serving-cert-j4s7s" condition "Ready" to 2026-04-16 18:22:33.668505039 +0000 UTC m=+26.267602576 I0416 18:22:33.725243 1 conditions.go:96] Setting lastTransitionTime for Issuer "capo-selfsigned-issuer" condition "Ready" to 2026-04-16 18:22:33.725226778 +0000 UTC m=+26.324324315 I0416 18:22:33.745200 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Ready" to 2026-04-16 18:22:33.745185838 +0000 UTC m=+26.344283375 I0416 18:22:33.745992 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="capo-system/capo-serving-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0416 18:22:33.746028 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Issuing" to 2026-04-16 18:22:33.746019822 +0000 UTC m=+26.345117359 I0416 18:22:33.765559 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 18:22:33.76553918 +0000 UTC m=+26.364636717 I0416 18:22:33.777814 1 controller.go:162] cert-manager/certificates-readiness "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capo-system/capo-serving-cert" I0416 18:22:33.778069 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Ready" to 2026-04-16 18:22:33.778059903 +0000 UTC m=+26.377157480 I0416 18:22:33.823054 1 controller.go:162] cert-manager/certificates-readiness "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" I0416 18:22:33.823526 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 18:22:33.823518264 +0000 UTC m=+26.422615791 I0416 18:22:33.906520 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-control-plane-serving-cert-t7xmp" condition "Approved" to 2026-04-16 18:22:33.906506546 +0000 UTC m=+26.505604083 I0416 18:22:33.924854 1 controller.go:162] cert-manager/certificates-key-manager "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capo-system/capo-serving-cert" I0416 18:22:33.939765 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-control-plane-serving-cert-t7xmp" condition "Ready" to 2026-04-16 18:22:33.939756993 +0000 UTC m=+26.538854540 I0416 18:22:34.299048 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capo-serving-cert-xwcmk" condition "Approved" to 2026-04-16 18:22:34.299032447 +0000 UTC m=+26.898129994 I0416 18:22:34.317671 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 18:22:34.317655577 +0000 UTC m=+26.916753134 I0416 18:22:34.389836 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capo-serving-cert-xwcmk" condition "Ready" to 2026-04-16 18:22:34.389811226 +0000 UTC m=+26.988908763 I0416 18:22:34.750120 1 controller.go:162] cert-manager/certificates-readiness "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" I0416 18:22:34.750452 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 18:22:34.75044561 +0000 UTC m=+27.349543157 I0416 18:22:35.109564 1 conditions.go:192] Found status change for Certificate "capo-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 18:22:35.109544936 +0000 UTC m=+27.708642483 I0416 18:22:35.203687 1 controller.go:162] cert-manager/certificates-key-manager "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" I0416 18:22:35.315250 1 controller.go:162] cert-manager/certificates-readiness "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capo-system/capo-serving-cert" I0416 18:22:35.315490 1 conditions.go:192] Found status change for Certificate "capo-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 18:22:35.315485606 +0000 UTC m=+27.914583143 I0416 18:22:35.553703 1 controller.go:162] cert-manager/certificates-key-manager "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capo-system/capo-serving-cert" E0416 18:24:04.768168 1 controller.go:137] cert-manager/issuers "msg"="issuer in work queue no longer exists" "error"="issuer.cert-manager.io \"capi-selfsigned-issuer\" not found" I0416 18:24:05.277114 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-selfsigned-issuer" condition "Ready" to 2026-04-16 18:24:05.276986245 +0000 UTC m=+117.876083792 I0416 18:24:05.551627 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Ready" to 2026-04-16 18:24:05.551602017 +0000 UTC m=+118.150699594 E0416 18:24:11.716896 1 controller.go:137] cert-manager/issuers "msg"="issuer in work queue no longer exists" "error"="issuer.cert-manager.io \"capi-kubeadm-bootstrap-selfsigned-issuer\" not found" I0416 18:24:11.755587 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-kubeadm-bootstrap-selfsigned-issuer" condition "Ready" to 2026-04-16 18:24:11.755571395 +0000 UTC m=+124.354668932 I0416 18:24:11.782304 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready" to 2026-04-16 18:24:11.782288151 +0000 UTC m=+124.381385708 E0416 18:24:13.912436 1 controller.go:137] cert-manager/issuers "msg"="issuer in work queue no longer exists" "error"="issuer.cert-manager.io \"capi-kubeadm-control-plane-selfsigned-issuer\" not found" I0416 18:24:13.955644 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-kubeadm-control-plane-selfsigned-issuer" condition "Ready" to 2026-04-16 18:24:13.955624603 +0000 UTC m=+126.554722150 I0416 18:24:14.013593 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready" to 2026-04-16 18:24:14.013577662 +0000 UTC m=+126.612675209 E0416 18:24:15.817037 1 controller.go:137] cert-manager/issuers "msg"="issuer in work queue no longer exists" "error"="issuer.cert-manager.io \"capo-selfsigned-issuer\" not found" I0416 18:24:15.868838 1 conditions.go:96] Setting lastTransitionTime for Issuer "capo-selfsigned-issuer" condition "Ready" to 2026-04-16 18:24:15.868820197 +0000 UTC m=+128.467917744 I0416 18:24:15.894550 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Ready" to 2026-04-16 18:24:15.894517591 +0000 UTC m=+128.493615148