I0409 15:57:52.613845 1 feature_gate.go:249] feature gates: &{map[AdditionalCertificateOutputFormats:true]} I0409 15:57:52.614060 1 start.go:75] cert-manager "msg"="starting controller" "git-commit"="b1d501c85d97afd2adde2e86c2b119ac060caece" "version"="v1.11.5" I0409 15:57:52.614128 1 controller.go:242] cert-manager/controller/build-context "msg"="configured acme dns01 nameservers" "nameservers"=["10.96.0.10:53"] W0409 15:57:52.614248 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0409 15:57:52.616187 1 controller.go:70] cert-manager/controller "msg"="enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" I0409 15:57:52.616686 1 controller.go:134] cert-manager/controller "msg"="starting leader election" I0409 15:57:52.616969 1 controller.go:91] cert-manager/controller "msg"="starting metrics server" "address"={"IP":"::","Port":9402,"Zone":""} I0409 15:57:52.617453 1 leaderelection.go:248] attempting to acquire leader lease cert-manager/cert-manager-controller... I0409 15:57:52.632663 1 leaderelection.go:258] successfully acquired lease cert-manager/cert-manager-controller I0409 15:57:52.633761 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificaterequests-issuer-venafi" I0409 15:57:52.634159 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-revision-manager" I0409 15:57:52.634654 1 controller.go:182] cert-manager/controller "msg"="not starting controller as it's disabled" "controller"="certificatesigningrequests-issuer-selfsigned" I0409 15:57:52.634860 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="issuers" I0409 15:57:52.635160 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="challenges" I0409 15:57:52.635801 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificaterequests-issuer-acme" I0409 15:57:52.636855 1 controller.go:182] cert-manager/controller "msg"="not starting controller as it's disabled" "controller"="certificatesigningrequests-issuer-acme" I0409 15:57:52.636877 1 controller.go:182] cert-manager/controller "msg"="not starting controller as it's disabled" "controller"="certificatesigningrequests-issuer-ca" I0409 15:57:52.636888 1 controller.go:182] cert-manager/controller "msg"="not starting controller as it's disabled" "controller"="certificatesigningrequests-issuer-venafi" I0409 15:57:52.636969 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificaterequests-issuer-selfsigned" I0409 15:57:52.637093 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-metrics" I0409 15:57:52.637297 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-request-manager" I0409 15:57:52.637412 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="ingress-shim" I0409 15:57:52.637721 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificaterequests-issuer-ca" I0409 15:57:52.638788 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificaterequests-issuer-vault" I0409 15:57:52.639020 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-readiness" I0409 15:57:52.639500 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-trigger" I0409 15:57:52.641768 1 controller.go:182] cert-manager/controller "msg"="not starting controller as it's disabled" "controller"="certificatesigningrequests-issuer-vault" I0409 15:57:52.642024 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="clusterissuers" I0409 15:57:52.643199 1 controller.go:182] cert-manager/controller "msg"="not starting controller as it's disabled" "controller"="gateway-shim" I0409 15:57:52.644068 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="orders" I0409 15:57:52.644405 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificaterequests-approver" I0409 15:57:52.645110 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-issuing" I0409 15:57:52.646761 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-key-manager" I0409 15:58:12.446477 1 conditions.go:96] Setting lastTransitionTime for Issuer "test-selfsigned" condition "Ready" to 2026-04-09 15:58:12.446394137 +0000 UTC m=+19.874814795 I0409 15:58:12.462695 1 conditions.go:203] Setting lastTransitionTime for Certificate "selfsigned-cert" condition "Ready" to 2026-04-09 15:58:12.462684287 +0000 UTC m=+19.891104925 I0409 15:58:12.463346 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="cert-manager-test/selfsigned-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0409 15:58:12.463399 1 conditions.go:203] Setting lastTransitionTime for Certificate "selfsigned-cert" condition "Issuing" to 2026-04-09 15:58:12.463391141 +0000 UTC m=+19.891811769 E0409 15:58:12.473584 1 event.go:267] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"selfsigned-cert.18a4bb7b90931795", GenerateName:"", Namespace:"cert-manager-test", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Certificate", Namespace:"cert-manager-test", Name:"selfsigned-cert", UID:"5fcfa784-882c-46ae-9294-6322d40f89d4", APIVersion:"cert-manager.io/v1", ResourceVersion:"1206", FieldPath:""}, Reason:"Issuing", Message:"Issuing certificate as Secret does not exist", Source:v1.EventSource{Component:"cert-manager-certificates-trigger", Host:""}, FirstTimestamp:time.Date(2026, time.April, 9, 15, 58, 12, 471748501, time.Local), LastTimestamp:time.Date(2026, time.April, 9, 15, 58, 12, 471748501, time.Local), Count:1, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "selfsigned-cert.18a4bb7b90931795" is forbidden: unable to create new content in namespace cert-manager-test because it is being terminated' (will not retry!) I0409 15:58:12.476451 1 controller.go:162] cert-manager/certificates-readiness "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"selfsigned-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="cert-manager-test/selfsigned-cert" I0409 15:58:12.476535 1 conditions.go:203] Setting lastTransitionTime for Certificate "selfsigned-cert" condition "Ready" to 2026-04-09 15:58:12.476514538 +0000 UTC m=+19.904935206 E0409 15:58:12.484760 1 controller.go:137] cert-manager/issuers "msg"="issuer in work queue no longer exists" "error"="issuer.cert-manager.io \"test-selfsigned\" not found" I0409 15:58:12.513387 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-selfsigned-issuer" condition "Ready" to 2026-04-09 15:58:12.513371105 +0000 UTC m=+19.941791763 I0409 15:58:12.528651 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Ready" to 2026-04-09 15:58:12.528636535 +0000 UTC m=+19.957057183 I0409 15:58:12.528718 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="capi-system/capi-serving-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0409 15:58:12.528745 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Issuing" to 2026-04-09 15:58:12.528739327 +0000 UTC m=+19.957159985 I0409 15:58:12.571698 1 controller.go:162] cert-manager/certificates-trigger "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-system/capi-serving-cert" I0409 15:58:12.571782 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="capi-system/capi-serving-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0409 15:58:12.571804 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Issuing" to 2026-04-09 15:58:12.57179962 +0000 UTC m=+20.000220248 E0409 15:58:12.659432 1 controller.go:167] cert-manager/certificates-key-manager "msg"="re-queuing item due to error processing" "error"="secrets \"selfsigned-cert-\" is forbidden: unable to create new content in namespace cert-manager-test because it is being terminated" "key"="cert-manager-test/selfsigned-cert" I0409 15:58:12.767719 1 controller.go:162] cert-manager/certificates-key-manager "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-system/capi-serving-cert" I0409 15:58:12.786970 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-serving-cert-m2p98" condition "Approved" to 2026-04-09 15:58:12.786959845 +0000 UTC m=+20.215380493 I0409 15:58:12.823153 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-serving-cert-m2p98" condition "Ready" to 2026-04-09 15:58:12.823137579 +0000 UTC m=+20.251558257 I0409 15:58:12.872321 1 conditions.go:192] Found status change for Certificate "capi-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 15:58:12.872311726 +0000 UTC m=+20.300732364 I0409 15:58:12.936783 1 controller.go:162] cert-manager/certificates-readiness "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-system/capi-serving-cert" I0409 15:58:12.937031 1 conditions.go:192] Found status change for Certificate "capi-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 15:58:12.937026728 +0000 UTC m=+20.365447366 I0409 15:58:12.955351 1 controller.go:162] cert-manager/certificates-readiness "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-system/capi-serving-cert" I0409 15:58:12.956074 1 conditions.go:192] Found status change for Certificate "capi-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 15:58:12.956065984 +0000 UTC m=+20.384486632 I0409 15:58:13.075127 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-kubeadm-bootstrap-selfsigned-issuer" condition "Ready" to 2026-04-09 15:58:13.07511582 +0000 UTC m=+20.503536458 I0409 15:58:13.089897 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready" to 2026-04-09 15:58:13.089885184 +0000 UTC m=+20.518305862 I0409 15:58:13.089949 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0409 15:58:13.091021 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Issuing" to 2026-04-09 15:58:13.091013717 +0000 UTC m=+20.519434355 I0409 15:58:13.116189 1 controller.go:162] cert-manager/certificates-readiness "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" I0409 15:58:13.116250 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready" to 2026-04-09 15:58:13.116244336 +0000 UTC m=+20.544664964 I0409 15:58:13.420580 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-kubeadm-control-plane-selfsigned-issuer" condition "Ready" to 2026-04-09 15:58:13.420564708 +0000 UTC m=+20.848985376 I0409 15:58:13.447929 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready" to 2026-04-09 15:58:13.44791695 +0000 UTC m=+20.876337588 I0409 15:58:13.448242 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0409 15:58:13.448258 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Issuing" to 2026-04-09 15:58:13.448254597 +0000 UTC m=+20.876675235 I0409 15:58:13.478970 1 controller.go:162] cert-manager/certificates-trigger "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" I0409 15:58:13.479048 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0409 15:58:13.479070 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Issuing" to 2026-04-09 15:58:13.479065651 +0000 UTC m=+20.907486289 I0409 15:58:13.775280 1 controller.go:162] cert-manager/certificates-key-manager "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" I0409 15:58:13.826916 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-bootstrap-serving-cert-hhsq5" condition "Approved" to 2026-04-09 15:58:13.826906928 +0000 UTC m=+21.255327586 I0409 15:58:13.836542 1 conditions.go:96] Setting lastTransitionTime for Issuer "capo-selfsigned-issuer" condition "Ready" to 2026-04-09 15:58:13.836535466 +0000 UTC m=+21.264956104 I0409 15:58:13.849422 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Ready" to 2026-04-09 15:58:13.849417641 +0000 UTC m=+21.277838279 I0409 15:58:13.849628 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="capo-system/capo-serving-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0409 15:58:13.849644 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Issuing" to 2026-04-09 15:58:13.849641356 +0000 UTC m=+21.278061994 I0409 15:58:13.854667 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-bootstrap-serving-cert-hhsq5" condition "Ready" to 2026-04-09 15:58:13.854661289 +0000 UTC m=+21.283081927 I0409 15:58:13.866318 1 controller.go:162] cert-manager/certificates-readiness "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capo-system/capo-serving-cert" I0409 15:58:13.866561 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Ready" to 2026-04-09 15:58:13.866554514 +0000 UTC m=+21.294975162 I0409 15:58:13.894162 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-control-plane-serving-cert-7wlr7" condition "Approved" to 2026-04-09 15:58:13.894153491 +0000 UTC m=+21.322574109 I0409 15:58:13.898749 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 15:58:13.898739746 +0000 UTC m=+21.327160384 I0409 15:58:13.930359 1 controller.go:162] cert-manager/certificates-readiness "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" I0409 15:58:13.931678 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 15:58:13.931667383 +0000 UTC m=+21.360088021 I0409 15:58:13.936014 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-control-plane-serving-cert-7wlr7" condition "Ready" to 2026-04-09 15:58:13.936004683 +0000 UTC m=+21.364425321 I0409 15:58:14.257435 1 controller.go:162] cert-manager/certificates-issuing "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" I0409 15:58:14.317376 1 controller.go:162] cert-manager/certificates-key-manager "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" I0409 15:58:14.417386 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 15:58:14.417379076 +0000 UTC m=+21.845799704 I0409 15:58:14.506595 1 controller.go:162] cert-manager/certificates-key-manager "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capo-system/capo-serving-cert" I0409 15:58:14.659365 1 controller.go:162] cert-manager/certificates-issuing "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" I0409 15:58:14.825904 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capo-serving-cert-kmcqn" condition "Approved" to 2026-04-09 15:58:14.825895699 +0000 UTC m=+22.254316327 I0409 15:58:14.923238 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capo-serving-cert-kmcqn" condition "Ready" to 2026-04-09 15:58:14.923229528 +0000 UTC m=+22.351650156 I0409 15:58:15.564689 1 conditions.go:192] Found status change for Certificate "capo-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 15:58:15.564671918 +0000 UTC m=+22.993092586 I0409 15:58:15.708503 1 controller.go:162] cert-manager/certificates-issuing "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capo-system/capo-serving-cert" E0409 15:59:22.366503 1 controller.go:137] cert-manager/issuers "msg"="issuer in work queue no longer exists" "error"="issuer.cert-manager.io \"capi-selfsigned-issuer\" not found" I0409 15:59:25.427592 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-selfsigned-issuer" condition "Ready" to 2026-04-09 15:59:25.427575518 +0000 UTC m=+92.855996156 I0409 15:59:25.452608 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Ready" to 2026-04-09 15:59:25.452583904 +0000 UTC m=+92.881004562 E0409 15:59:27.815186 1 controller.go:137] cert-manager/issuers "msg"="issuer in work queue no longer exists" "error"="issuer.cert-manager.io \"capi-kubeadm-bootstrap-selfsigned-issuer\" not found" I0409 15:59:27.852671 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-kubeadm-bootstrap-selfsigned-issuer" condition "Ready" to 2026-04-09 15:59:27.852652624 +0000 UTC m=+95.281073272 I0409 15:59:27.880160 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready" to 2026-04-09 15:59:27.880142307 +0000 UTC m=+95.308562945 E0409 15:59:29.460749 1 controller.go:137] cert-manager/issuers "msg"="issuer in work queue no longer exists" "error"="issuer.cert-manager.io \"capi-kubeadm-control-plane-selfsigned-issuer\" not found" I0409 15:59:29.497467 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-kubeadm-control-plane-selfsigned-issuer" condition "Ready" to 2026-04-09 15:59:29.497445159 +0000 UTC m=+96.925865827 I0409 15:59:29.518674 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready" to 2026-04-09 15:59:29.518658707 +0000 UTC m=+96.947079375 E0409 15:59:31.042164 1 controller.go:137] cert-manager/issuers "msg"="issuer in work queue no longer exists" "error"="issuer.cert-manager.io \"capo-selfsigned-issuer\" not found" I0409 15:59:31.079585 1 conditions.go:96] Setting lastTransitionTime for Issuer "capo-selfsigned-issuer" condition "Ready" to 2026-04-09 15:59:31.079568817 +0000 UTC m=+98.507989455 I0409 15:59:31.099784 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Ready" to 2026-04-09 15:59:31.099780365 +0000 UTC m=+98.528200993