I0608 15:47:32.143797 1 feature_gate.go:249] feature gates: &{map[AdditionalCertificateOutputFormats:true]} I0608 15:47:32.144160 1 start.go:75] cert-manager "msg"="starting controller" "git-commit"="b1d501c85d97afd2adde2e86c2b119ac060caece" "version"="v1.11.5" I0608 15:47:32.144241 1 controller.go:242] cert-manager/controller/build-context "msg"="configured acme dns01 nameservers" "nameservers"=["10.96.0.10:53"] W0608 15:47:32.144406 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0608 15:47:32.146651 1 controller.go:70] cert-manager/controller "msg"="enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" I0608 15:47:32.147560 1 controller.go:134] cert-manager/controller "msg"="starting leader election" I0608 15:47:32.147759 1 controller.go:91] cert-manager/controller "msg"="starting metrics server" "address"={"IP":"::","Port":9402,"Zone":""} I0608 15:47:32.148555 1 leaderelection.go:248] attempting to acquire leader lease cert-manager/cert-manager-controller... I0608 15:47:32.163503 1 leaderelection.go:258] successfully acquired lease cert-manager/cert-manager-controller I0608 15:47:32.164260 1 controller.go:182] cert-manager/controller "msg"="not starting controller as it's disabled" "controller"="gateway-shim" I0608 15:47:32.167149 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificaterequests-issuer-acme" I0608 15:47:32.171022 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificaterequests-issuer-venafi" I0608 15:47:32.172160 1 controller.go:182] cert-manager/controller "msg"="not starting controller as it's disabled" "controller"="certificatesigningrequests-issuer-vault" I0608 15:47:32.172237 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-metrics" I0608 15:47:32.172852 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="issuers" I0608 15:47:32.173806 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificaterequests-approver" I0608 15:47:32.174342 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-issuing" I0608 15:47:32.175558 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-key-manager" I0608 15:47:32.176059 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-revision-manager" I0608 15:47:32.176418 1 controller.go:182] cert-manager/controller "msg"="not starting controller as it's disabled" "controller"="certificatesigningrequests-issuer-acme" I0608 15:47:32.176440 1 controller.go:182] cert-manager/controller "msg"="not starting controller as it's disabled" "controller"="certificatesigningrequests-issuer-ca" I0608 15:47:32.176459 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-trigger" I0608 15:47:32.177147 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="challenges" I0608 15:47:32.177569 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="orders" I0608 15:47:32.178077 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="ingress-shim" I0608 15:47:32.178372 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificaterequests-issuer-ca" I0608 15:47:32.178842 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-readiness" I0608 15:47:32.179383 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="clusterissuers" I0608 15:47:32.180088 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificaterequests-issuer-selfsigned" I0608 15:47:32.180584 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificaterequests-issuer-vault" I0608 15:47:32.180959 1 controller.go:182] cert-manager/controller "msg"="not starting controller as it's disabled" "controller"="certificatesigningrequests-issuer-selfsigned" I0608 15:47:32.180988 1 controller.go:182] cert-manager/controller "msg"="not starting controller as it's disabled" "controller"="certificatesigningrequests-issuer-venafi" I0608 15:47:32.181584 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-request-manager" I0608 15:48:02.739103 1 conditions.go:96] Setting lastTransitionTime for Issuer "test-selfsigned" condition "Ready" to 2026-06-08 15:48:02.73904977 +0000 UTC m=+30.632921315 I0608 15:48:02.761228 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="cert-manager-test/selfsigned-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0608 15:48:02.761251 1 conditions.go:203] Setting lastTransitionTime for Certificate "selfsigned-cert" condition "Ready" to 2026-06-08 15:48:02.761241882 +0000 UTC m=+30.655113427 I0608 15:48:02.761264 1 conditions.go:203] Setting lastTransitionTime for Certificate "selfsigned-cert" condition "Issuing" to 2026-06-08 15:48:02.761257423 +0000 UTC m=+30.655128968 I0608 15:48:02.784401 1 controller.go:162] cert-manager/certificates-trigger "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"selfsigned-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="cert-manager-test/selfsigned-cert" I0608 15:48:02.784480 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="cert-manager-test/selfsigned-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0608 15:48:02.784497 1 conditions.go:203] Setting lastTransitionTime for Certificate "selfsigned-cert" condition "Issuing" to 2026-06-08 15:48:02.78449245 +0000 UTC m=+30.678364015 E0608 15:48:02.790880 1 controller.go:137] cert-manager/issuers "msg"="issuer in work queue no longer exists" "error"="issuer.cert-manager.io \"test-selfsigned\" not found" E0608 15:48:02.796994 1 event.go:267] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"selfsigned-cert.18b725bfab837d8c", GenerateName:"", Namespace:"cert-manager-test", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Certificate", Namespace:"cert-manager-test", Name:"selfsigned-cert", UID:"b0631d43-d7fd-452a-90b7-fcee2a95eb6d", APIVersion:"cert-manager.io/v1", ResourceVersion:"1390", FieldPath:""}, Reason:"Issuing", Message:"Issuing certificate as Secret does not exist", Source:v1.EventSource{Component:"cert-manager-certificates-trigger", Host:""}, FirstTimestamp:time.Date(2026, time.June, 8, 15, 48, 2, 794823052, time.Local), LastTimestamp:time.Date(2026, time.June, 8, 15, 48, 2, 794823052, time.Local), Count:1, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "selfsigned-cert.18b725bfab837d8c" is forbidden: unable to create new content in namespace cert-manager-test because it is being terminated' (will not retry!) I0608 15:48:02.842927 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-selfsigned-issuer" condition "Ready" to 2026-06-08 15:48:02.842911846 +0000 UTC m=+30.736783411 I0608 15:48:02.859640 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Ready" to 2026-06-08 15:48:02.859631653 +0000 UTC m=+30.753503218 I0608 15:48:02.859683 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="capi-system/capi-serving-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0608 15:48:02.859705 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Issuing" to 2026-06-08 15:48:02.859700666 +0000 UTC m=+30.753572221 E0608 15:48:02.877085 1 controller.go:167] cert-manager/certificates-key-manager "msg"="re-queuing item due to error processing" "error"="secrets \"selfsigned-cert-\" is forbidden: unable to create new content in namespace cert-manager-test because it is being terminated" "key"="cert-manager-test/selfsigned-cert" I0608 15:48:02.879665 1 controller.go:162] cert-manager/certificates-trigger "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-system/capi-serving-cert" I0608 15:48:02.880060 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="capi-system/capi-serving-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0608 15:48:02.880192 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Issuing" to 2026-06-08 15:48:02.880184086 +0000 UTC m=+30.774055641 I0608 15:48:03.454770 1 controller.go:162] cert-manager/certificates-key-manager "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-system/capi-serving-cert" I0608 15:48:03.484778 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-serving-cert-7rf8l" condition "Approved" to 2026-06-08 15:48:03.484767583 +0000 UTC m=+31.378639148 I0608 15:48:03.516420 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-serving-cert-7rf8l" condition "Ready" to 2026-06-08 15:48:03.516409725 +0000 UTC m=+31.410281280 I0608 15:48:03.571987 1 conditions.go:192] Found status change for Certificate "capi-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-08 15:48:03.571974687 +0000 UTC m=+31.465846242 I0608 15:48:03.599135 1 controller.go:162] cert-manager/certificates-issuing "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-system/capi-serving-cert" I0608 15:48:03.653823 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-kubeadm-bootstrap-selfsigned-issuer" condition "Ready" to 2026-06-08 15:48:03.65381079 +0000 UTC m=+31.547682335 I0608 15:48:03.677406 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0608 15:48:03.677445 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Issuing" to 2026-06-08 15:48:03.677437816 +0000 UTC m=+31.571309361 I0608 15:48:03.677472 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready" to 2026-06-08 15:48:03.677458696 +0000 UTC m=+31.571330241 I0608 15:48:03.702634 1 controller.go:162] cert-manager/certificates-readiness "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" I0608 15:48:03.702888 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready" to 2026-06-08 15:48:03.702881065 +0000 UTC m=+31.596752610 I0608 15:48:04.116193 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-kubeadm-control-plane-selfsigned-issuer" condition "Ready" to 2026-06-08 15:48:04.116183021 +0000 UTC m=+32.010054576 I0608 15:48:04.145612 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready" to 2026-06-08 15:48:04.145596676 +0000 UTC m=+32.039468231 I0608 15:48:04.146036 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0608 15:48:04.146058 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Issuing" to 2026-06-08 15:48:04.146053637 +0000 UTC m=+32.039925192 I0608 15:48:04.169249 1 controller.go:162] cert-manager/certificates-readiness "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" I0608 15:48:04.169332 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready" to 2026-06-08 15:48:04.169325622 +0000 UTC m=+32.063197177 I0608 15:48:04.223844 1 controller.go:162] cert-manager/certificates-key-manager "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" I0608 15:48:04.286626 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-bootstrap-serving-cert-9kzgs" condition "Approved" to 2026-06-08 15:48:04.286614742 +0000 UTC m=+32.180486287 I0608 15:48:04.369225 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-bootstrap-serving-cert-9kzgs" condition "Ready" to 2026-06-08 15:48:04.369217578 +0000 UTC m=+32.263089123 I0608 15:48:04.406963 1 controller.go:162] cert-manager/certificates-key-manager "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" I0608 15:48:04.444281 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-08 15:48:04.444270351 +0000 UTC m=+32.338141896 I0608 15:48:04.469076 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-control-plane-serving-cert-j85g7" condition "Approved" to 2026-06-08 15:48:04.469066583 +0000 UTC m=+32.362938128 I0608 15:48:04.486392 1 controller.go:162] cert-manager/certificates-readiness "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" I0608 15:48:04.486874 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-08 15:48:04.486868736 +0000 UTC m=+32.380740281 I0608 15:48:04.519035 1 controller.go:162] cert-manager/certificates-readiness "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" I0608 15:48:04.519707 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-08 15:48:04.519697714 +0000 UTC m=+32.413569279 I0608 15:48:04.522535 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-control-plane-serving-cert-j85g7" condition "Ready" to 2026-06-08 15:48:04.522525172 +0000 UTC m=+32.416396717 I0608 15:48:04.585124 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-08 15:48:04.584586789 +0000 UTC m=+32.478458344 I0608 15:48:04.629052 1 controller.go:162] cert-manager/certificates-readiness "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" I0608 15:48:04.629385 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-08 15:48:04.629375837 +0000 UTC m=+32.523247422 I0608 15:48:04.631889 1 conditions.go:96] Setting lastTransitionTime for Issuer "capo-selfsigned-issuer" condition "Ready" to 2026-06-08 15:48:04.631877438 +0000 UTC m=+32.525749023 I0608 15:48:04.658185 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="capo-system/capo-serving-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0608 15:48:04.658213 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Issuing" to 2026-06-08 15:48:04.658204518 +0000 UTC m=+32.552076073 I0608 15:48:04.658268 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Ready" to 2026-06-08 15:48:04.658251469 +0000 UTC m=+32.552123054 I0608 15:48:04.941981 1 controller.go:162] cert-manager/certificates-readiness "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capo-system/capo-serving-cert" I0608 15:48:04.942058 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Ready" to 2026-06-08 15:48:04.942053323 +0000 UTC m=+32.835924868 I0608 15:48:05.003749 1 controller.go:162] cert-manager/certificates-key-manager "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" I0608 15:48:05.405635 1 controller.go:162] cert-manager/certificates-key-manager "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capo-system/capo-serving-cert" I0608 15:48:05.462696 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capo-serving-cert-6vg9n" condition "Approved" to 2026-06-08 15:48:05.462682003 +0000 UTC m=+33.356553558 I0608 15:48:05.511928 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capo-serving-cert-6vg9n" condition "Ready" to 2026-06-08 15:48:05.511913506 +0000 UTC m=+33.405785051 I0608 15:48:05.930404 1 conditions.go:192] Found status change for Certificate "capo-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-08 15:48:05.930393938 +0000 UTC m=+33.824265483 I0608 15:48:06.075866 1 controller.go:162] cert-manager/certificates-issuing "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capo-system/capo-serving-cert" E0608 15:49:24.643481 1 controller.go:137] cert-manager/issuers "msg"="issuer in work queue no longer exists" "error"="issuer.cert-manager.io \"capi-selfsigned-issuer\" not found" I0608 15:49:24.884852 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-selfsigned-issuer" condition "Ready" to 2026-06-08 15:49:24.884835097 +0000 UTC m=+112.778706642 I0608 15:49:25.078952 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Ready" to 2026-06-08 15:49:25.078933077 +0000 UTC m=+112.972804632 E0608 15:49:33.235126 1 controller.go:137] cert-manager/issuers "msg"="issuer in work queue no longer exists" "error"="issuer.cert-manager.io \"capi-kubeadm-bootstrap-selfsigned-issuer\" not found" I0608 15:49:33.273596 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-kubeadm-bootstrap-selfsigned-issuer" condition "Ready" to 2026-06-08 15:49:33.273539273 +0000 UTC m=+121.167410818 I0608 15:49:33.848069 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready" to 2026-06-08 15:49:33.84804961 +0000 UTC m=+121.741921165 E0608 15:49:36.552219 1 controller.go:137] cert-manager/issuers "msg"="issuer in work queue no longer exists" "error"="issuer.cert-manager.io \"capi-kubeadm-control-plane-selfsigned-issuer\" not found" I0608 15:49:36.600588 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-kubeadm-control-plane-selfsigned-issuer" condition "Ready" to 2026-06-08 15:49:36.600571199 +0000 UTC m=+124.494442744 I0608 15:49:36.632370 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready" to 2026-06-08 15:49:36.632355233 +0000 UTC m=+124.526226788 E0608 15:49:40.521500 1 controller.go:137] cert-manager/issuers "msg"="issuer in work queue no longer exists" "error"="issuer.cert-manager.io \"capo-selfsigned-issuer\" not found" I0608 15:49:40.579809 1 conditions.go:96] Setting lastTransitionTime for Issuer "capo-selfsigned-issuer" condition "Ready" to 2026-06-08 15:49:40.579787498 +0000 UTC m=+128.473659053 I0608 15:49:40.605127 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Ready" to 2026-06-08 15:49:40.605106482 +0000 UTC m=+128.498978027