Name: cert-manager-67c7974877-7nklq Namespace: cert-manager Priority: 0 Service Account: cert-manager Node: instance/199.204.45.132 Start Time: Mon, 30 Mar 2026 17:57:09 +0000 Labels: app=cert-manager app.kubernetes.io/component=controller app.kubernetes.io/instance=cert-manager app.kubernetes.io/managed-by=Helm app.kubernetes.io/name=cert-manager app.kubernetes.io/version=v1.15.5 helm.sh/chart=cert-manager-v1.15.5 pod-template-hash=67c7974877 Annotations: prometheus.io/path: /metrics prometheus.io/port: 9402 prometheus.io/scrape: true Status: Running SeccompProfile: RuntimeDefault IP: 10.0.0.215 IPs: IP: 10.0.0.215 Controlled By: ReplicaSet/cert-manager-67c7974877 Containers: cert-manager-controller: Container ID: containerd://97f824a1b0c615367a600b20bb1a3d609c29fbecb939ddd1fe1423c24779d607 Image: harbor.atmosphere.dev/quay.io/jetstack/cert-manager-controller:v1.12.17 Image ID: harbor.atmosphere.dev/quay.io/jetstack/cert-manager-controller@sha256:de51d939b7d79f99284181a98a36254735b265cc47aabcc4db4650c246c86dba Ports: 9402/TCP, 9403/TCP Host Ports: 0/TCP, 0/TCP Args: --v=2 --cluster-resource-namespace=$(POD_NAMESPACE) --leader-election-namespace=cert-manager --acme-http01-solver-image=harbor.atmosphere.dev/quay.io/jetstack/cert-manager-acmesolver:v1.12.17 --enable-gateway-api --max-concurrent-challenges=60 State: Waiting Reason: CrashLoopBackOff Last State: Terminated Reason: Error Exit Code: 1 Started: Mon, 30 Mar 2026 18:03:13 +0000 Finished: Mon, 30 Mar 2026 18:03:13 +0000 Ready: False Restart Count: 6 Liveness: http-get http://:http-healthz/livez delay=10s timeout=15s period=10s #success=1 #failure=8 Environment: POD_NAMESPACE: cert-manager (v1:metadata.namespace) Mounts: /etc/ssl/certs from etc-ssl-certs (ro) /var/run/secrets/kubernetes.io/serviceaccount from kube-api-access-cf68n (ro) Conditions: Type Status Initialized True Ready False ContainersReady False PodScheduled True Volumes: etc-ssl-certs: Type: HostPath (bare host directory volume) Path: /etc/ssl/certs HostPathType: kube-api-access-cf68n: Type: Projected (a volume that contains injected data from multiple sources) TokenExpirationSeconds: 3607 ConfigMapName: kube-root-ca.crt ConfigMapOptional: DownwardAPI: true QoS Class: BestEffort Node-Selectors: kubernetes.io/os=linux openstack-control-plane=enabled Tolerations: node.kubernetes.io/not-ready:NoExecute op=Exists for 300s node.kubernetes.io/unreachable:NoExecute op=Exists for 300s Events: Type Reason Age From Message ---- ------ ---- ---- ------- Normal Scheduled 10m default-scheduler Successfully assigned cert-manager/cert-manager-67c7974877-7nklq to instance Normal Pulling 10m kubelet Pulling image "harbor.atmosphere.dev/quay.io/jetstack/cert-manager-controller:v1.12.17" Normal Pulled 10m kubelet Successfully pulled image "harbor.atmosphere.dev/quay.io/jetstack/cert-manager-controller:v1.12.17" in 1.239s (3.555s including waiting) Normal Started 9m43s (x4 over 10m) kubelet Started container cert-manager-controller Normal Created 8m57s (x5 over 10m) kubelet Created container cert-manager-controller Normal Pulled 8m57s (x4 over 10m) kubelet Container image "harbor.atmosphere.dev/quay.io/jetstack/cert-manager-controller:v1.12.17" already present on machine Warning BackOff 37s (x51 over 10m) kubelet Back-off restarting failed container cert-manager-controller in pod cert-manager-67c7974877-7nklq_cert-manager(7517eb18-0d83-4e0a-ae49-812fb6a2eabb)