Name: cert-manager-67c7974877-vq4l4 Namespace: cert-manager Priority: 0 Service Account: cert-manager Node: instance/199.19.213.27 Start Time: Mon, 30 Mar 2026 17:58:20 +0000 Labels: app=cert-manager app.kubernetes.io/component=controller app.kubernetes.io/instance=cert-manager app.kubernetes.io/managed-by=Helm app.kubernetes.io/name=cert-manager app.kubernetes.io/version=v1.15.5 helm.sh/chart=cert-manager-v1.15.5 pod-template-hash=67c7974877 Annotations: prometheus.io/path: /metrics prometheus.io/port: 9402 prometheus.io/scrape: true Status: Running SeccompProfile: RuntimeDefault IP: 10.0.0.5 IPs: IP: 10.0.0.5 Controlled By: ReplicaSet/cert-manager-67c7974877 Containers: cert-manager-controller: Container ID: containerd://de8f0fd6b287d7442cf3dbaaaa4d5e1658f386bf56f768140550aa05c2cc4795 Image: harbor.atmosphere.dev/quay.io/jetstack/cert-manager-controller:v1.12.17 Image ID: harbor.atmosphere.dev/quay.io/jetstack/cert-manager-controller@sha256:de51d939b7d79f99284181a98a36254735b265cc47aabcc4db4650c246c86dba Ports: 9402/TCP, 9403/TCP Host Ports: 0/TCP, 0/TCP Args: --v=2 --cluster-resource-namespace=$(POD_NAMESPACE) --leader-election-namespace=cert-manager --acme-http01-solver-image=harbor.atmosphere.dev/quay.io/jetstack/cert-manager-acmesolver:v1.12.17 --enable-gateway-api --max-concurrent-challenges=60 State: Waiting Reason: CrashLoopBackOff Last State: Terminated Reason: Error Exit Code: 1 Started: Mon, 30 Mar 2026 18:04:18 +0000 Finished: Mon, 30 Mar 2026 18:04:18 +0000 Ready: False Restart Count: 6 Liveness: http-get http://:http-healthz/livez delay=10s timeout=15s period=10s #success=1 #failure=8 Environment: POD_NAMESPACE: cert-manager (v1:metadata.namespace) Mounts: /etc/ssl/certs from etc-ssl-certs (ro) /var/run/secrets/kubernetes.io/serviceaccount from kube-api-access-s6rw7 (ro) Conditions: Type Status Initialized True Ready False ContainersReady False PodScheduled True Volumes: etc-ssl-certs: Type: HostPath (bare host directory volume) Path: /etc/ssl/certs HostPathType: kube-api-access-s6rw7: Type: Projected (a volume that contains injected data from multiple sources) TokenExpirationSeconds: 3607 ConfigMapName: kube-root-ca.crt ConfigMapOptional: DownwardAPI: true QoS Class: BestEffort Node-Selectors: kubernetes.io/os=linux openstack-control-plane=enabled Tolerations: node.kubernetes.io/not-ready:NoExecute op=Exists for 300s node.kubernetes.io/unreachable:NoExecute op=Exists for 300s Events: Type Reason Age From Message ---- ------ ---- ---- ------- Normal Scheduled 10m default-scheduler Successfully assigned cert-manager/cert-manager-67c7974877-vq4l4 to instance Normal Pulling 10m kubelet Pulling image "harbor.atmosphere.dev/quay.io/jetstack/cert-manager-controller:v1.12.17" Normal Pulled 10m kubelet Successfully pulled image "harbor.atmosphere.dev/quay.io/jetstack/cert-manager-controller:v1.12.17" in 1.158s (2.628s including waiting) Normal Started 9m48s (x4 over 10m) kubelet Started container cert-manager-controller Normal Created 9m1s (x5 over 10m) kubelet Created container cert-manager-controller Normal Pulled 9m1s (x4 over 10m) kubelet Container image "harbor.atmosphere.dev/quay.io/jetstack/cert-manager-controller:v1.12.17" already present on machine Warning BackOff 38s (x50 over 10m) kubelet Back-off restarting failed container cert-manager-controller in pod cert-manager-67c7974877-vq4l4_cert-manager(3eee7080-4ae1-4179-8d8d-b773e8f79f4d)