I0609 17:56:23.109349 1 feature_gate.go:249] feature gates: &{map[AdditionalCertificateOutputFormats:true]} I0609 17:56:23.109498 1 start.go:75] cert-manager "msg"="starting controller" "git-commit"="b1d501c85d97afd2adde2e86c2b119ac060caece" "version"="v1.11.5" I0609 17:56:23.109549 1 controller.go:242] cert-manager/controller/build-context "msg"="configured acme dns01 nameservers" "nameservers"=["10.96.0.10:53"] W0609 17:56:23.109652 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0609 17:56:23.111131 1 controller.go:70] cert-manager/controller "msg"="enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" I0609 17:56:23.111450 1 controller.go:134] cert-manager/controller "msg"="starting leader election" I0609 17:56:23.111687 1 controller.go:91] cert-manager/controller "msg"="starting metrics server" "address"={"IP":"::","Port":9402,"Zone":""} I0609 17:56:23.111955 1 leaderelection.go:248] attempting to acquire leader lease cert-manager/cert-manager-controller... I0609 17:56:23.126330 1 leaderelection.go:258] successfully acquired lease cert-manager/cert-manager-controller I0609 17:56:23.127725 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-readiness" I0609 17:56:23.128511 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-trigger" I0609 17:56:23.129343 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="challenges" I0609 17:56:23.130069 1 controller.go:182] cert-manager/controller "msg"="not starting controller as it's disabled" "controller"="certificatesigningrequests-issuer-venafi" I0609 17:56:23.130413 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificaterequests-issuer-acme" I0609 17:56:23.130582 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificaterequests-issuer-selfsigned" I0609 17:56:23.130663 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="issuers" I0609 17:56:23.131233 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="orders" I0609 17:56:23.131565 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificaterequests-issuer-ca" I0609 17:56:23.131953 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-key-manager" I0609 17:56:23.132791 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-metrics" I0609 17:56:23.132911 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-request-manager" I0609 17:56:23.133234 1 controller.go:182] cert-manager/controller "msg"="not starting controller as it's disabled" "controller"="certificatesigningrequests-issuer-ca" I0609 17:56:23.133258 1 controller.go:182] cert-manager/controller "msg"="not starting controller as it's disabled" "controller"="certificatesigningrequests-issuer-selfsigned" I0609 17:56:23.133315 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-revision-manager" I0609 17:56:23.133743 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="ingress-shim" I0609 17:56:23.134127 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificaterequests-approver" I0609 17:56:23.134930 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="clusterissuers" I0609 17:56:23.135270 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificaterequests-issuer-venafi" I0609 17:56:23.135955 1 controller.go:182] cert-manager/controller "msg"="not starting controller as it's disabled" "controller"="certificatesigningrequests-issuer-acme" I0609 17:56:23.135991 1 controller.go:182] cert-manager/controller "msg"="not starting controller as it's disabled" "controller"="certificatesigningrequests-issuer-vault" I0609 17:56:23.136002 1 controller.go:182] cert-manager/controller "msg"="not starting controller as it's disabled" "controller"="gateway-shim" I0609 17:56:23.136078 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-issuing" I0609 17:56:23.136743 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificaterequests-issuer-vault" I0609 17:56:48.519239 1 conditions.go:96] Setting lastTransitionTime for Issuer "test-selfsigned" condition "Ready" to 2026-06-09 17:56:48.519212526 +0000 UTC m=+25.444475003 I0609 17:56:48.536601 1 conditions.go:203] Setting lastTransitionTime for Certificate "selfsigned-cert" condition "Ready" to 2026-06-09 17:56:48.536591086 +0000 UTC m=+25.461853593 I0609 17:56:48.536676 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="cert-manager-test/selfsigned-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0609 17:56:48.536702 1 conditions.go:203] Setting lastTransitionTime for Certificate "selfsigned-cert" condition "Issuing" to 2026-06-09 17:56:48.536697288 +0000 UTC m=+25.461959745 E0609 17:56:48.554116 1 event.go:267] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"selfsigned-cert.18b77b5b07b97a99", GenerateName:"", Namespace:"cert-manager-test", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Certificate", Namespace:"cert-manager-test", Name:"selfsigned-cert", UID:"0cff7878-ebb6-41ae-b07f-98d968afdd15", APIVersion:"cert-manager.io/v1", ResourceVersion:"1339", FieldPath:""}, Reason:"Issuing", Message:"Issuing certificate as Secret does not exist", Source:v1.EventSource{Component:"cert-manager-certificates-trigger", Host:""}, FirstTimestamp:time.Date(2026, time.June, 9, 17, 56, 48, 550156953, time.Local), LastTimestamp:time.Date(2026, time.June, 9, 17, 56, 48, 550156953, time.Local), Count:1, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "selfsigned-cert.18b77b5b07b97a99" is forbidden: unable to create new content in namespace cert-manager-test because it is being terminated' (will not retry!) I0609 17:56:48.557151 1 controller.go:162] cert-manager/certificates-readiness "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"selfsigned-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="cert-manager-test/selfsigned-cert" I0609 17:56:48.557486 1 conditions.go:203] Setting lastTransitionTime for Certificate "selfsigned-cert" condition "Ready" to 2026-06-09 17:56:48.557452522 +0000 UTC m=+25.482715019 E0609 17:56:48.567827 1 controller.go:137] cert-manager/issuers "msg"="issuer in work queue no longer exists" "error"="issuer.cert-manager.io \"test-selfsigned\" not found" I0609 17:56:48.613371 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-selfsigned-issuer" condition "Ready" to 2026-06-09 17:56:48.613355762 +0000 UTC m=+25.538618269 I0609 17:56:48.630581 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="capi-system/capi-serving-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0609 17:56:48.630607 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Issuing" to 2026-06-09 17:56:48.63060259 +0000 UTC m=+25.555865067 I0609 17:56:48.630623 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Ready" to 2026-06-09 17:56:48.63061503 +0000 UTC m=+25.555877527 I0609 17:56:48.650848 1 controller.go:162] cert-manager/certificates-trigger "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-system/capi-serving-cert" I0609 17:56:48.650908 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="capi-system/capi-serving-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0609 17:56:48.650922 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Issuing" to 2026-06-09 17:56:48.650917715 +0000 UTC m=+25.576180192 E0609 17:56:48.748376 1 controller.go:167] cert-manager/certificates-key-manager "msg"="re-queuing item due to error processing" "error"="secrets \"selfsigned-cert-\" is forbidden: unable to create new content in namespace cert-manager-test because it is being terminated" "key"="cert-manager-test/selfsigned-cert" I0609 17:56:48.922840 1 controller.go:162] cert-manager/certificates-key-manager "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-system/capi-serving-cert" I0609 17:56:48.934532 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-serving-cert-nvf9q" condition "Approved" to 2026-06-09 17:56:48.934522295 +0000 UTC m=+25.859784802 I0609 17:56:48.974634 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-serving-cert-nvf9q" condition "Ready" to 2026-06-09 17:56:48.974624785 +0000 UTC m=+25.899887262 I0609 17:56:49.025943 1 conditions.go:192] Found status change for Certificate "capi-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-09 17:56:49.025932028 +0000 UTC m=+25.951194505 I0609 17:56:49.078433 1 controller.go:162] cert-manager/certificates-readiness "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-system/capi-serving-cert" I0609 17:56:49.078678 1 conditions.go:192] Found status change for Certificate "capi-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-09 17:56:49.078672357 +0000 UTC m=+26.003934824 I0609 17:56:49.421857 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-kubeadm-bootstrap-selfsigned-issuer" condition "Ready" to 2026-06-09 17:56:49.421848415 +0000 UTC m=+26.347110882 I0609 17:56:49.444527 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready" to 2026-06-09 17:56:49.444514394 +0000 UTC m=+26.369776871 I0609 17:56:49.444860 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0609 17:56:49.444876 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Issuing" to 2026-06-09 17:56:49.44487333 +0000 UTC m=+26.370135807 I0609 17:56:49.461363 1 controller.go:162] cert-manager/certificates-trigger "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" I0609 17:56:49.461426 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0609 17:56:49.461440 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Issuing" to 2026-06-09 17:56:49.461435704 +0000 UTC m=+26.386698171 I0609 17:56:49.843355 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-kubeadm-control-plane-selfsigned-issuer" condition "Ready" to 2026-06-09 17:56:49.843334156 +0000 UTC m=+26.768596633 I0609 17:56:49.864296 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready" to 2026-06-09 17:56:49.864288773 +0000 UTC m=+26.789551250 I0609 17:56:49.864531 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0609 17:56:49.864607 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Issuing" to 2026-06-09 17:56:49.864599458 +0000 UTC m=+26.789861935 I0609 17:56:49.889010 1 controller.go:162] cert-manager/certificates-trigger "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" I0609 17:56:49.889097 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0609 17:56:49.889117 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Issuing" to 2026-06-09 17:56:49.889112213 +0000 UTC m=+26.814374690 I0609 17:56:50.097931 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-bootstrap-serving-cert-45xsr" condition "Approved" to 2026-06-09 17:56:50.097921334 +0000 UTC m=+27.023183801 I0609 17:56:50.157938 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-bootstrap-serving-cert-45xsr" condition "Ready" to 2026-06-09 17:56:50.157929088 +0000 UTC m=+27.083191555 I0609 17:56:50.203840 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-09 17:56:50.203831165 +0000 UTC m=+27.129093622 I0609 17:56:50.204955 1 controller.go:162] cert-manager/certificates-key-manager "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" I0609 17:56:50.221160 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-control-plane-serving-cert-nqj49" condition "Approved" to 2026-06-09 17:56:50.221149033 +0000 UTC m=+27.146411500 I0609 17:56:50.232072 1 controller.go:162] cert-manager/certificates-issuing "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" I0609 17:56:50.268938 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-control-plane-serving-cert-nqj49" condition "Ready" to 2026-06-09 17:56:50.268922686 +0000 UTC m=+27.194185153 I0609 17:56:50.316121 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-09 17:56:50.316106028 +0000 UTC m=+27.241368535 I0609 17:56:50.335325 1 conditions.go:96] Setting lastTransitionTime for Issuer "capo-selfsigned-issuer" condition "Ready" to 2026-06-09 17:56:50.335317031 +0000 UTC m=+27.260579508 I0609 17:56:50.340729 1 controller.go:162] cert-manager/certificates-issuing "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" I0609 17:56:50.356867 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Ready" to 2026-06-09 17:56:50.356857868 +0000 UTC m=+27.282120335 I0609 17:56:50.357039 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="capo-system/capo-serving-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0609 17:56:50.357053 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Issuing" to 2026-06-09 17:56:50.357049452 +0000 UTC m=+27.282311919 I0609 17:56:50.437167 1 controller.go:162] cert-manager/certificates-trigger "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capo-system/capo-serving-cert" I0609 17:56:50.437270 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="capo-system/capo-serving-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0609 17:56:50.437287 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Issuing" to 2026-06-09 17:56:50.437282808 +0000 UTC m=+27.362545285 I0609 17:56:51.041236 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capo-serving-cert-kpw6w" condition "Approved" to 2026-06-09 17:56:51.041221042 +0000 UTC m=+27.966483539 I0609 17:56:51.063565 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capo-serving-cert-kpw6w" condition "Ready" to 2026-06-09 17:56:51.063550473 +0000 UTC m=+27.988812950 I0609 17:56:51.434944 1 conditions.go:192] Found status change for Certificate "capo-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-09 17:56:51.434933371 +0000 UTC m=+28.360195848 I0609 17:56:51.578871 1 controller.go:162] cert-manager/certificates-readiness "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capo-system/capo-serving-cert" I0609 17:56:51.579270 1 conditions.go:192] Found status change for Certificate "capo-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-09 17:56:51.579260314 +0000 UTC m=+28.504522811 I0609 17:56:51.784647 1 controller.go:162] cert-manager/certificates-key-manager "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capo-system/capo-serving-cert" E0609 17:58:02.308105 1 controller.go:137] cert-manager/issuers "msg"="issuer in work queue no longer exists" "error"="issuer.cert-manager.io \"capi-selfsigned-issuer\" not found" I0609 17:58:02.357949 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-selfsigned-issuer" condition "Ready" to 2026-06-09 17:58:02.357903932 +0000 UTC m=+99.283166419 I0609 17:58:02.383165 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Ready" to 2026-06-09 17:58:02.383149202 +0000 UTC m=+99.308411679 E0609 17:58:04.800622 1 controller.go:137] cert-manager/issuers "msg"="issuer in work queue no longer exists" "error"="issuer.cert-manager.io \"capi-kubeadm-bootstrap-selfsigned-issuer\" not found" I0609 17:58:04.837624 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-kubeadm-bootstrap-selfsigned-issuer" condition "Ready" to 2026-06-09 17:58:04.837606405 +0000 UTC m=+101.762868882 I0609 17:58:04.865969 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready" to 2026-06-09 17:58:04.865947119 +0000 UTC m=+101.791209616 E0609 17:58:06.587785 1 controller.go:137] cert-manager/issuers "msg"="issuer in work queue no longer exists" "error"="issuer.cert-manager.io \"capi-kubeadm-control-plane-selfsigned-issuer\" not found" I0609 17:58:06.625752 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-kubeadm-control-plane-selfsigned-issuer" condition "Ready" to 2026-06-09 17:58:06.625725255 +0000 UTC m=+103.550987732 I0609 17:58:06.648475 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready" to 2026-06-09 17:58:06.648452831 +0000 UTC m=+103.573715338 E0609 17:58:08.436692 1 controller.go:137] cert-manager/issuers "msg"="issuer in work queue no longer exists" "error"="issuer.cert-manager.io \"capo-selfsigned-issuer\" not found" I0609 17:58:08.489810 1 conditions.go:96] Setting lastTransitionTime for Issuer "capo-selfsigned-issuer" condition "Ready" to 2026-06-09 17:58:08.489787793 +0000 UTC m=+105.415050300 I0609 17:58:08.509715 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Ready" to 2026-06-09 17:58:08.509695129 +0000 UTC m=+105.434957606