I0423 04:42:36.870734 1 feature_gate.go:249] feature gates: &{map[AdditionalCertificateOutputFormats:true]} I0423 04:42:36.870870 1 start.go:75] cert-manager "msg"="starting controller" "git-commit"="b1d501c85d97afd2adde2e86c2b119ac060caece" "version"="v1.11.5" I0423 04:42:36.870909 1 controller.go:242] cert-manager/controller/build-context "msg"="configured acme dns01 nameservers" "nameservers"=["10.96.0.10:53"] W0423 04:42:36.870998 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0423 04:42:36.872119 1 controller.go:70] cert-manager/controller "msg"="enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" I0423 04:42:36.873167 1 controller.go:134] cert-manager/controller "msg"="starting leader election" I0423 04:42:36.873358 1 controller.go:91] cert-manager/controller "msg"="starting metrics server" "address"={"IP":"::","Port":9402,"Zone":""} I0423 04:42:36.873617 1 leaderelection.go:248] attempting to acquire leader lease cert-manager/cert-manager-controller... I0423 04:42:36.887898 1 leaderelection.go:258] successfully acquired lease cert-manager/cert-manager-controller I0423 04:42:36.888942 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificaterequests-issuer-acme" I0423 04:42:36.889561 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificaterequests-issuer-selfsigned" I0423 04:42:36.891004 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificaterequests-issuer-ca" I0423 04:42:36.891680 1 controller.go:182] cert-manager/controller "msg"="not starting controller as it's disabled" "controller"="certificatesigningrequests-issuer-acme" I0423 04:42:36.891759 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-readiness" I0423 04:42:36.892351 1 controller.go:182] cert-manager/controller "msg"="not starting controller as it's disabled" "controller"="gateway-shim" I0423 04:42:36.892618 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="clusterissuers" I0423 04:42:36.893666 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="ingress-shim" I0423 04:42:36.894398 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-issuing" I0423 04:42:36.894815 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-key-manager" I0423 04:42:36.895951 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-metrics" I0423 04:42:36.896513 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-revision-manager" I0423 04:42:36.896971 1 controller.go:182] cert-manager/controller "msg"="not starting controller as it's disabled" "controller"="certificatesigningrequests-issuer-ca" I0423 04:42:36.896995 1 controller.go:182] cert-manager/controller "msg"="not starting controller as it's disabled" "controller"="certificatesigningrequests-issuer-selfsigned" I0423 04:42:36.897035 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-trigger" I0423 04:42:36.897696 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="challenges" I0423 04:42:36.898260 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="orders" I0423 04:42:36.898731 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificaterequests-approver" I0423 04:42:36.899183 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificaterequests-issuer-vault" I0423 04:42:36.899702 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificaterequests-issuer-venafi" I0423 04:42:36.900013 1 controller.go:182] cert-manager/controller "msg"="not starting controller as it's disabled" "controller"="certificatesigningrequests-issuer-vault" I0423 04:42:36.900030 1 controller.go:182] cert-manager/controller "msg"="not starting controller as it's disabled" "controller"="certificatesigningrequests-issuer-venafi" I0423 04:42:36.900071 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-request-manager" I0423 04:42:36.901300 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="issuers" I0423 04:43:01.572156 1 conditions.go:96] Setting lastTransitionTime for Issuer "test-selfsigned" condition "Ready" to 2026-04-23 04:43:01.572125377 +0000 UTC m=+24.732023019 I0423 04:43:01.585503 1 conditions.go:203] Setting lastTransitionTime for Certificate "selfsigned-cert" condition "Ready" to 2026-04-23 04:43:01.585482561 +0000 UTC m=+24.745380193 I0423 04:43:01.585918 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="cert-manager-test/selfsigned-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0423 04:43:01.585944 1 conditions.go:203] Setting lastTransitionTime for Certificate "selfsigned-cert" condition "Issuing" to 2026-04-23 04:43:01.585937273 +0000 UTC m=+24.745834915 E0423 04:43:01.600924 1 event.go:267] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"selfsigned-cert.18a8e2c356a8a064", GenerateName:"", Namespace:"cert-manager-test", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Certificate", Namespace:"cert-manager-test", Name:"selfsigned-cert", UID:"3b3836d4-87f3-4b53-a753-c86b6e21ff88", APIVersion:"cert-manager.io/v1", ResourceVersion:"1362", FieldPath:""}, Reason:"Issuing", Message:"Issuing certificate as Secret does not exist", Source:v1.EventSource{Component:"cert-manager-certificates-trigger", Host:""}, FirstTimestamp:time.Date(2026, time.April, 23, 4, 43, 1, 598052452, time.Local), LastTimestamp:time.Date(2026, time.April, 23, 4, 43, 1, 598052452, time.Local), Count:1, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "selfsigned-cert.18a8e2c356a8a064" is forbidden: unable to create new content in namespace cert-manager-test because it is being terminated' (will not retry!) E0423 04:43:01.603349 1 controller.go:137] cert-manager/issuers "msg"="issuer in work queue no longer exists" "error"="issuer.cert-manager.io \"test-selfsigned\" not found" I0423 04:43:01.605608 1 controller.go:162] cert-manager/certificates-readiness "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"selfsigned-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="cert-manager-test/selfsigned-cert" I0423 04:43:01.605694 1 conditions.go:203] Setting lastTransitionTime for Certificate "selfsigned-cert" condition "Ready" to 2026-04-23 04:43:01.605672632 +0000 UTC m=+24.765570264 E0423 04:43:01.620337 1 controller.go:167] cert-manager/certificates-readiness "msg"="re-queuing item due to error processing" "error"="certificates.cert-manager.io \"selfsigned-cert\" not found" "key"="cert-manager-test/selfsigned-cert" I0423 04:43:01.641955 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-selfsigned-issuer" condition "Ready" to 2026-04-23 04:43:01.641942884 +0000 UTC m=+24.801840546 I0423 04:43:01.654858 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="capi-system/capi-serving-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0423 04:43:01.654888 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Issuing" to 2026-04-23 04:43:01.654881046 +0000 UTC m=+24.814778718 I0423 04:43:01.655225 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Ready" to 2026-04-23 04:43:01.655215495 +0000 UTC m=+24.815113137 I0423 04:43:01.672095 1 controller.go:162] cert-manager/certificates-readiness "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-system/capi-serving-cert" I0423 04:43:01.672142 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Ready" to 2026-04-23 04:43:01.672137253 +0000 UTC m=+24.832034895 E0423 04:43:01.714836 1 controller.go:167] cert-manager/certificates-key-manager "msg"="re-queuing item due to error processing" "error"="secrets \"selfsigned-cert-\" is forbidden: unable to create new content in namespace cert-manager-test because it is being terminated" "key"="cert-manager-test/selfsigned-cert" I0423 04:43:02.537253 1 controller.go:162] cert-manager/certificates-key-manager "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-system/capi-serving-cert" I0423 04:43:03.904776 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-serving-cert-2g6p6" condition "Approved" to 2026-04-23 04:43:03.904765232 +0000 UTC m=+27.064662894 I0423 04:43:04.159764 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-serving-cert-2g6p6" condition "Ready" to 2026-04-23 04:43:04.159755409 +0000 UTC m=+27.319653051 I0423 04:43:04.205368 1 conditions.go:192] Found status change for Certificate "capi-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-23 04:43:04.20535595 +0000 UTC m=+27.365253572 I0423 04:43:04.228833 1 controller.go:162] cert-manager/certificates-readiness "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-system/capi-serving-cert" I0423 04:43:04.229428 1 conditions.go:192] Found status change for Certificate "capi-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-23 04:43:04.229420261 +0000 UTC m=+27.389317913 I0423 04:43:04.261759 1 controller.go:162] cert-manager/certificates-key-manager "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-system/capi-serving-cert" I0423 04:43:04.468151 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-kubeadm-bootstrap-selfsigned-issuer" condition "Ready" to 2026-04-23 04:43:04.468138173 +0000 UTC m=+27.628035825 I0423 04:43:04.481650 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready" to 2026-04-23 04:43:04.481639326 +0000 UTC m=+27.641536978 I0423 04:43:04.481759 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0423 04:43:04.481786 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Issuing" to 2026-04-23 04:43:04.48178061 +0000 UTC m=+27.641678252 I0423 04:43:04.494901 1 controller.go:162] cert-manager/certificates-trigger "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" I0423 04:43:04.494968 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0423 04:43:04.494982 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Issuing" to 2026-04-23 04:43:04.494977384 +0000 UTC m=+27.654875026 I0423 04:43:04.775660 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-kubeadm-control-plane-selfsigned-issuer" condition "Ready" to 2026-04-23 04:43:04.775649573 +0000 UTC m=+27.935547205 I0423 04:43:04.795604 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0423 04:43:04.795676 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Issuing" to 2026-04-23 04:43:04.79567043 +0000 UTC m=+27.955568072 I0423 04:43:04.795991 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready" to 2026-04-23 04:43:04.795984119 +0000 UTC m=+27.955881761 I0423 04:43:04.827927 1 controller.go:162] cert-manager/certificates-readiness "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" I0423 04:43:04.829342 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready" to 2026-04-23 04:43:04.829335783 +0000 UTC m=+27.989233425 I0423 04:43:05.020033 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-bootstrap-serving-cert-f7gb8" condition "Approved" to 2026-04-23 04:43:05.020023603 +0000 UTC m=+28.179921235 I0423 04:43:05.084933 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-bootstrap-serving-cert-f7gb8" condition "Ready" to 2026-04-23 04:43:05.0848789 +0000 UTC m=+28.244776532 I0423 04:43:05.159399 1 conditions.go:96] Setting lastTransitionTime for Issuer "capo-selfsigned-issuer" condition "Ready" to 2026-04-23 04:43:05.159390741 +0000 UTC m=+28.319288373 I0423 04:43:05.161570 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-23 04:43:05.161566342 +0000 UTC m=+28.321463974 I0423 04:43:05.177950 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="capo-system/capo-serving-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0423 04:43:05.178417 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Issuing" to 2026-04-23 04:43:05.178413697 +0000 UTC m=+28.338311339 I0423 04:43:05.178241 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Ready" to 2026-04-23 04:43:05.178232922 +0000 UTC m=+28.338130564 I0423 04:43:05.184329 1 controller.go:162] cert-manager/certificates-readiness "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" I0423 04:43:05.186670 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-23 04:43:05.186664499 +0000 UTC m=+28.346562141 I0423 04:43:05.194629 1 controller.go:162] cert-manager/certificates-issuing "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" I0423 04:43:05.201591 1 controller.go:162] cert-manager/certificates-trigger "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capo-system/capo-serving-cert" I0423 04:43:05.201928 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="capo-system/capo-serving-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0423 04:43:05.201954 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Issuing" to 2026-04-23 04:43:05.201949429 +0000 UTC m=+28.361847061 I0423 04:43:05.204254 1 controller.go:162] cert-manager/certificates-readiness "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" I0423 04:43:05.204505 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-23 04:43:05.204500522 +0000 UTC m=+28.364398154 I0423 04:43:05.214176 1 controller.go:162] cert-manager/certificates-key-manager "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" I0423 04:43:05.404652 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capo-serving-cert-694cw" condition "Approved" to 2026-04-23 04:43:05.404641883 +0000 UTC m=+28.564539535 I0423 04:43:05.435834 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capo-serving-cert-694cw" condition "Ready" to 2026-04-23 04:43:05.435822872 +0000 UTC m=+28.595720514 I0423 04:43:05.483020 1 controller.go:162] cert-manager/certificates-key-manager "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" I0423 04:43:05.506311 1 conditions.go:192] Found status change for Certificate "capo-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-23 04:43:05.506302658 +0000 UTC m=+28.666200290 I0423 04:43:05.532230 1 controller.go:162] cert-manager/certificates-issuing "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capo-system/capo-serving-cert" I0423 04:43:05.548039 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-control-plane-serving-cert-rqlwz" condition "Approved" to 2026-04-23 04:43:05.548025544 +0000 UTC m=+28.707923186 I0423 04:43:05.931043 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-control-plane-serving-cert-rqlwz" condition "Ready" to 2026-04-23 04:43:05.931029309 +0000 UTC m=+29.090926941 I0423 04:43:06.265164 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-23 04:43:06.26515202 +0000 UTC m=+29.425049652 I0423 04:43:06.310408 1 controller.go:162] cert-manager/certificates-key-manager "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capo-system/capo-serving-cert" I0423 04:43:06.413117 1 controller.go:162] cert-manager/certificates-issuing "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" E0423 04:44:33.630983 1 controller.go:137] cert-manager/issuers "msg"="issuer in work queue no longer exists" "error"="issuer.cert-manager.io \"capi-selfsigned-issuer\" not found" I0423 04:44:33.780174 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-selfsigned-issuer" condition "Ready" to 2026-04-23 04:44:33.780109537 +0000 UTC m=+116.940007199 I0423 04:44:33.888476 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Ready" to 2026-04-23 04:44:33.88844139 +0000 UTC m=+117.048339062 E0423 04:44:38.683694 1 controller.go:137] cert-manager/issuers "msg"="issuer in work queue no longer exists" "error"="issuer.cert-manager.io \"capi-kubeadm-bootstrap-selfsigned-issuer\" not found" I0423 04:44:38.735599 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-kubeadm-bootstrap-selfsigned-issuer" condition "Ready" to 2026-04-23 04:44:38.735576216 +0000 UTC m=+121.895473878 I0423 04:44:38.858514 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready" to 2026-04-23 04:44:38.858502505 +0000 UTC m=+122.018400147 E0423 04:44:41.950020 1 controller.go:137] cert-manager/issuers "msg"="issuer in work queue no longer exists" "error"="issuer.cert-manager.io \"capi-kubeadm-control-plane-selfsigned-issuer\" not found" I0423 04:44:41.995199 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-kubeadm-control-plane-selfsigned-issuer" condition "Ready" to 2026-04-23 04:44:41.995127504 +0000 UTC m=+125.155025146 I0423 04:44:42.019279 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready" to 2026-04-23 04:44:42.019267069 +0000 UTC m=+125.179164711 E0423 04:44:43.662476 1 controller.go:137] cert-manager/issuers "msg"="issuer in work queue no longer exists" "error"="issuer.cert-manager.io \"capo-selfsigned-issuer\" not found" I0423 04:44:43.717974 1 conditions.go:96] Setting lastTransitionTime for Issuer "capo-selfsigned-issuer" condition "Ready" to 2026-04-23 04:44:43.717962459 +0000 UTC m=+126.877860091 I0423 04:44:43.735050 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Ready" to 2026-04-23 04:44:43.735031462 +0000 UTC m=+126.894929104