I0509 13:11:10.797414 1 feature_gate.go:249] feature gates: &{map[AdditionalCertificateOutputFormats:true]} I0509 13:11:10.797525 1 start.go:75] cert-manager "msg"="starting controller" "git-commit"="b1d501c85d97afd2adde2e86c2b119ac060caece" "version"="v1.11.5" I0509 13:11:10.798912 1 controller.go:242] cert-manager/controller/build-context "msg"="configured acme dns01 nameservers" "nameservers"=["10.96.0.10:53"] W0509 13:11:10.799121 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0509 13:11:10.800556 1 controller.go:70] cert-manager/controller "msg"="enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" I0509 13:11:10.800949 1 controller.go:134] cert-manager/controller "msg"="starting leader election" I0509 13:11:10.801083 1 controller.go:91] cert-manager/controller "msg"="starting metrics server" "address"={"IP":"::","Port":9402,"Zone":""} I0509 13:11:10.801605 1 leaderelection.go:248] attempting to acquire leader lease cert-manager/cert-manager-controller... I0509 13:11:10.815679 1 leaderelection.go:258] successfully acquired lease cert-manager/cert-manager-controller I0509 13:11:10.815905 1 controller.go:182] cert-manager/controller "msg"="not starting controller as it's disabled" "controller"="gateway-shim" I0509 13:11:10.818707 1 controller.go:182] cert-manager/controller "msg"="not starting controller as it's disabled" "controller"="certificatesigningrequests-issuer-venafi" I0509 13:11:10.819840 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificaterequests-issuer-ca" I0509 13:11:10.819940 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificaterequests-issuer-acme" I0509 13:11:10.820009 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificaterequests-issuer-selfsigned" I0509 13:11:10.820004 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-revision-manager" I0509 13:11:10.820078 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="clusterissuers" I0509 13:11:10.820167 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificaterequests-approver" I0509 13:11:10.820515 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificaterequests-issuer-venafi" I0509 13:11:10.821306 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-metrics" I0509 13:11:10.821692 1 controller.go:182] cert-manager/controller "msg"="not starting controller as it's disabled" "controller"="certificatesigningrequests-issuer-ca" I0509 13:11:10.821731 1 controller.go:182] cert-manager/controller "msg"="not starting controller as it's disabled" "controller"="certificatesigningrequests-issuer-vault" I0509 13:11:10.821742 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-trigger" I0509 13:11:10.822235 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="orders" I0509 13:11:10.822661 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificaterequests-issuer-vault" I0509 13:11:10.823145 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-issuing" I0509 13:11:10.823598 1 controller.go:182] cert-manager/controller "msg"="not starting controller as it's disabled" "controller"="certificatesigningrequests-issuer-selfsigned" I0509 13:11:10.823656 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-readiness" I0509 13:11:10.824704 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="issuers" I0509 13:11:10.824981 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="challenges" I0509 13:11:10.827163 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="ingress-shim" I0509 13:11:10.828014 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-key-manager" I0509 13:11:10.828738 1 controller.go:182] cert-manager/controller "msg"="not starting controller as it's disabled" "controller"="certificatesigningrequests-issuer-acme" I0509 13:11:10.829038 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-request-manager" I0509 13:11:42.058994 1 conditions.go:96] Setting lastTransitionTime for Issuer "test-selfsigned" condition "Ready" to 2026-05-09 13:11:42.05893974 +0000 UTC m=+31.289748624 I0509 13:11:42.070899 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="cert-manager-test/selfsigned-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0509 13:11:42.070941 1 conditions.go:203] Setting lastTransitionTime for Certificate "selfsigned-cert" condition "Issuing" to 2026-05-09 13:11:42.070936241 +0000 UTC m=+31.301745115 I0509 13:11:42.070897 1 conditions.go:203] Setting lastTransitionTime for Certificate "selfsigned-cert" condition "Ready" to 2026-05-09 13:11:42.07088625 +0000 UTC m=+31.301695114 E0509 13:11:42.089274 1 event.go:267] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"selfsigned-cert.18ade7ce867d0d86", GenerateName:"", Namespace:"cert-manager-test", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Certificate", Namespace:"cert-manager-test", Name:"selfsigned-cert", UID:"a28e7df9-fd54-4477-b7bf-42ba41f6291a", APIVersion:"cert-manager.io/v1", ResourceVersion:"1312", FieldPath:""}, Reason:"Issuing", Message:"Issuing certificate as Secret does not exist", Source:v1.EventSource{Component:"cert-manager-certificates-trigger", Host:""}, FirstTimestamp:time.Date(2026, time.May, 9, 13, 11, 42, 86835590, time.Local), LastTimestamp:time.Date(2026, time.May, 9, 13, 11, 42, 86835590, time.Local), Count:1, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "selfsigned-cert.18ade7ce867d0d86" is forbidden: unable to create new content in namespace cert-manager-test because it is being terminated' (will not retry!) I0509 13:11:42.090847 1 controller.go:162] cert-manager/certificates-readiness "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"selfsigned-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="cert-manager-test/selfsigned-cert" I0509 13:11:42.091218 1 conditions.go:203] Setting lastTransitionTime for Certificate "selfsigned-cert" condition "Ready" to 2026-05-09 13:11:42.091211641 +0000 UTC m=+31.322020505 E0509 13:11:42.092792 1 controller.go:137] cert-manager/issuers "msg"="issuer in work queue no longer exists" "error"="issuer.cert-manager.io \"test-selfsigned\" not found" E0509 13:11:42.102333 1 controller.go:167] cert-manager/certificates-readiness "msg"="re-queuing item due to error processing" "error"="certificates.cert-manager.io \"selfsigned-cert\" not found" "key"="cert-manager-test/selfsigned-cert" I0509 13:11:42.119844 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-selfsigned-issuer" condition "Ready" to 2026-05-09 13:11:42.119832651 +0000 UTC m=+31.350641515 I0509 13:11:42.134869 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Ready" to 2026-05-09 13:11:42.134863716 +0000 UTC m=+31.365672570 I0509 13:11:42.135001 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="capi-system/capi-serving-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0509 13:11:42.135042 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Issuing" to 2026-05-09 13:11:42.135031741 +0000 UTC m=+31.365840635 I0509 13:11:42.153026 1 controller.go:162] cert-manager/certificates-trigger "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-system/capi-serving-cert" I0509 13:11:42.153089 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="capi-system/capi-serving-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0509 13:11:42.153105 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Issuing" to 2026-05-09 13:11:42.1531019 +0000 UTC m=+31.383910754 I0509 13:11:42.353480 1 controller.go:162] cert-manager/certificates-key-manager "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-system/capi-serving-cert" I0509 13:11:42.360437 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-serving-cert-9djwn" condition "Approved" to 2026-05-09 13:11:42.360428614 +0000 UTC m=+31.591237458 I0509 13:11:42.481087 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-serving-cert-9djwn" condition "Ready" to 2026-05-09 13:11:42.481079524 +0000 UTC m=+31.711888378 I0509 13:11:42.518495 1 conditions.go:192] Found status change for Certificate "capi-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 13:11:42.518485147 +0000 UTC m=+31.749294001 I0509 13:11:42.533365 1 controller.go:162] cert-manager/certificates-issuing "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-system/capi-serving-cert" I0509 13:11:42.672243 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-kubeadm-bootstrap-selfsigned-issuer" condition "Ready" to 2026-05-09 13:11:42.672225791 +0000 UTC m=+31.903034655 E0509 13:11:42.674611 1 controller.go:167] cert-manager/certificates-key-manager "msg"="re-queuing item due to error processing" "error"="secrets \"selfsigned-cert-\" is forbidden: unable to create new content in namespace cert-manager-test because it is being terminated" "key"="cert-manager-test/selfsigned-cert" I0509 13:11:42.685668 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready" to 2026-05-09 13:11:42.685659012 +0000 UTC m=+31.916467866 I0509 13:11:42.685678 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0509 13:11:42.685847 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Issuing" to 2026-05-09 13:11:42.685838917 +0000 UTC m=+31.916647781 I0509 13:11:42.702852 1 controller.go:162] cert-manager/certificates-trigger "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" I0509 13:11:42.702896 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0509 13:11:42.702908 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Issuing" to 2026-05-09 13:11:42.702903868 +0000 UTC m=+31.933712722 I0509 13:11:43.016531 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-kubeadm-control-plane-selfsigned-issuer" condition "Ready" to 2026-05-09 13:11:43.016521053 +0000 UTC m=+32.247329897 I0509 13:11:43.035303 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0509 13:11:43.035326 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Issuing" to 2026-05-09 13:11:43.035320999 +0000 UTC m=+32.266129853 I0509 13:11:43.035575 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready" to 2026-05-09 13:11:43.035572006 +0000 UTC m=+32.266380860 I0509 13:11:43.054772 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-bootstrap-serving-cert-d9xxm" condition "Approved" to 2026-05-09 13:11:43.054762832 +0000 UTC m=+32.285571686 I0509 13:11:43.074856 1 controller.go:162] cert-manager/certificates-readiness "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" I0509 13:11:43.074913 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready" to 2026-05-09 13:11:43.074908074 +0000 UTC m=+32.305716928 I0509 13:11:43.099942 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-bootstrap-serving-cert-d9xxm" condition "Ready" to 2026-05-09 13:11:43.099932491 +0000 UTC m=+32.330741345 I0509 13:11:43.210957 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 13:11:43.210946723 +0000 UTC m=+32.441755577 I0509 13:11:43.252323 1 controller.go:162] cert-manager/certificates-readiness "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" I0509 13:11:43.252608 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 13:11:43.252601825 +0000 UTC m=+32.483410679 I0509 13:11:43.259569 1 controller.go:162] cert-manager/certificates-issuing "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" I0509 13:11:43.280299 1 controller.go:162] cert-manager/certificates-key-manager "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" I0509 13:11:43.280533 1 controller.go:162] cert-manager/certificates-readiness "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" I0509 13:11:43.280814 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 13:11:43.280808959 +0000 UTC m=+32.511617813 I0509 13:11:43.429670 1 conditions.go:96] Setting lastTransitionTime for Issuer "capo-selfsigned-issuer" condition "Ready" to 2026-05-09 13:11:43.429657109 +0000 UTC m=+32.660465973 I0509 13:11:43.443004 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Ready" to 2026-05-09 13:11:43.442993725 +0000 UTC m=+32.673802589 I0509 13:11:43.443153 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="capo-system/capo-serving-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0509 13:11:43.444610 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Issuing" to 2026-05-09 13:11:43.44460416 +0000 UTC m=+32.675413054 I0509 13:11:43.463083 1 controller.go:162] cert-manager/certificates-readiness "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capo-system/capo-serving-cert" I0509 13:11:43.463134 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Ready" to 2026-05-09 13:11:43.463128767 +0000 UTC m=+32.693937621 I0509 13:11:43.479913 1 controller.go:162] cert-manager/certificates-key-manager "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" I0509 13:11:43.531825 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-control-plane-serving-cert-92jhx" condition "Approved" to 2026-05-09 13:11:43.53181143 +0000 UTC m=+32.762620284 I0509 13:11:43.637289 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-control-plane-serving-cert-92jhx" condition "Ready" to 2026-05-09 13:11:43.637278421 +0000 UTC m=+32.868087285 I0509 13:11:44.120158 1 controller.go:162] cert-manager/certificates-key-manager "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capo-system/capo-serving-cert" I0509 13:11:44.228474 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 13:11:44.228461776 +0000 UTC m=+33.459270640 I0509 13:11:44.371238 1 controller.go:162] cert-manager/certificates-readiness "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" I0509 13:11:44.371565 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 13:11:44.371561084 +0000 UTC m=+33.602369938 I0509 13:11:44.429154 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capo-serving-cert-6md96" condition "Approved" to 2026-05-09 13:11:44.42914004 +0000 UTC m=+33.659948904 I0509 13:11:44.935213 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capo-serving-cert-6md96" condition "Ready" to 2026-05-09 13:11:44.935203839 +0000 UTC m=+34.166012703 I0509 13:11:44.971340 1 controller.go:162] cert-manager/certificates-key-manager "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" I0509 13:11:45.276980 1 conditions.go:192] Found status change for Certificate "capo-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 13:11:45.276969304 +0000 UTC m=+34.507778168 I0509 13:11:45.391740 1 controller.go:162] cert-manager/certificates-issuing "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capo-system/capo-serving-cert" E0509 13:12:56.866388 1 controller.go:137] cert-manager/issuers "msg"="issuer in work queue no longer exists" "error"="issuer.cert-manager.io \"capi-selfsigned-issuer\" not found" I0509 13:12:56.899236 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-selfsigned-issuer" condition "Ready" to 2026-05-09 13:12:56.89920845 +0000 UTC m=+106.130017314 I0509 13:12:56.921587 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Ready" to 2026-05-09 13:12:56.921577298 +0000 UTC m=+106.152386152 E0509 13:12:58.858368 1 controller.go:137] cert-manager/issuers "msg"="issuer in work queue no longer exists" "error"="issuer.cert-manager.io \"capi-kubeadm-bootstrap-selfsigned-issuer\" not found" I0509 13:12:58.899958 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-kubeadm-bootstrap-selfsigned-issuer" condition "Ready" to 2026-05-09 13:12:58.899944336 +0000 UTC m=+108.130753200 I0509 13:12:58.922849 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready" to 2026-05-09 13:12:58.922838162 +0000 UTC m=+108.153647026 E0509 13:13:00.451287 1 controller.go:137] cert-manager/issuers "msg"="issuer in work queue no longer exists" "error"="issuer.cert-manager.io \"capi-kubeadm-control-plane-selfsigned-issuer\" not found" I0509 13:13:00.485865 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-kubeadm-control-plane-selfsigned-issuer" condition "Ready" to 2026-05-09 13:13:00.485854945 +0000 UTC m=+109.716663799 I0509 13:13:00.505759 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready" to 2026-05-09 13:13:00.505747461 +0000 UTC m=+109.736556325 E0509 13:13:02.143672 1 controller.go:137] cert-manager/issuers "msg"="issuer in work queue no longer exists" "error"="issuer.cert-manager.io \"capo-selfsigned-issuer\" not found" I0509 13:13:02.177577 1 conditions.go:96] Setting lastTransitionTime for Issuer "capo-selfsigned-issuer" condition "Ready" to 2026-05-09 13:13:02.177561763 +0000 UTC m=+111.408370647 I0509 13:13:02.196932 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Ready" to 2026-05-09 13:13:02.196919177 +0000 UTC m=+111.427728041