I0602 21:20:09.359782 1 feature_gate.go:249] feature gates: &{map[AdditionalCertificateOutputFormats:true]} I0602 21:20:09.360047 1 start.go:75] cert-manager "msg"="starting controller" "git-commit"="b1d501c85d97afd2adde2e86c2b119ac060caece" "version"="v1.11.5" I0602 21:20:09.360145 1 controller.go:242] cert-manager/controller/build-context "msg"="configured acme dns01 nameservers" "nameservers"=["10.96.0.10:53"] W0602 21:20:09.360289 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0602 21:20:09.362682 1 controller.go:70] cert-manager/controller "msg"="enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" I0602 21:20:09.363252 1 controller.go:134] cert-manager/controller "msg"="starting leader election" I0602 21:20:09.363690 1 controller.go:91] cert-manager/controller "msg"="starting metrics server" "address"={"IP":"::","Port":9402,"Zone":""} I0602 21:20:09.364153 1 leaderelection.go:248] attempting to acquire leader lease cert-manager/cert-manager-controller... I0602 21:20:09.379986 1 leaderelection.go:258] successfully acquired lease cert-manager/cert-manager-controller I0602 21:20:09.381339 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="orders" I0602 21:20:09.382101 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="ingress-shim" I0602 21:20:09.389467 1 controller.go:182] cert-manager/controller "msg"="not starting controller as it's disabled" "controller"="gateway-shim" I0602 21:20:09.389693 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificaterequests-issuer-venafi" I0602 21:20:09.390085 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-issuing" I0602 21:20:09.390307 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-metrics" I0602 21:20:09.396009 1 controller.go:182] cert-manager/controller "msg"="not starting controller as it's disabled" "controller"="certificatesigningrequests-issuer-ca" I0602 21:20:09.396027 1 controller.go:182] cert-manager/controller "msg"="not starting controller as it's disabled" "controller"="certificatesigningrequests-issuer-selfsigned" I0602 21:20:09.396043 1 controller.go:182] cert-manager/controller "msg"="not starting controller as it's disabled" "controller"="certificatesigningrequests-issuer-vault" I0602 21:20:09.396074 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-request-manager" I0602 21:20:09.396155 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-readiness" I0602 21:20:09.396968 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="clusterissuers" I0602 21:20:09.398791 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificaterequests-issuer-acme" I0602 21:20:09.400482 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificaterequests-approver" I0602 21:20:09.401340 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificaterequests-issuer-selfsigned" I0602 21:20:09.402386 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificaterequests-issuer-vault" I0602 21:20:09.402748 1 controller.go:182] cert-manager/controller "msg"="not starting controller as it's disabled" "controller"="certificatesigningrequests-issuer-acme" I0602 21:20:09.402807 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-revision-manager" I0602 21:20:09.403403 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="issuers" I0602 21:20:09.404134 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="challenges" I0602 21:20:09.404597 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificaterequests-issuer-ca" I0602 21:20:09.405145 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-key-manager" I0602 21:20:09.405618 1 controller.go:182] cert-manager/controller "msg"="not starting controller as it's disabled" "controller"="certificatesigningrequests-issuer-venafi" I0602 21:20:09.406203 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-trigger" I0602 21:20:35.485603 1 conditions.go:96] Setting lastTransitionTime for Issuer "test-selfsigned" condition "Ready" to 2026-06-02 21:20:35.485576287 +0000 UTC m=+26.171015412 I0602 21:20:35.508487 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="cert-manager-test/selfsigned-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0602 21:20:35.508646 1 conditions.go:203] Setting lastTransitionTime for Certificate "selfsigned-cert" condition "Issuing" to 2026-06-02 21:20:35.508638334 +0000 UTC m=+26.194077469 I0602 21:20:35.509111 1 conditions.go:203] Setting lastTransitionTime for Certificate "selfsigned-cert" condition "Ready" to 2026-06-02 21:20:35.509053388 +0000 UTC m=+26.194492543 E0602 21:20:35.544387 1 controller.go:137] cert-manager/issuers "msg"="issuer in work queue no longer exists" "error"="issuer.cert-manager.io \"test-selfsigned\" not found" I0602 21:20:35.551827 1 controller.go:162] cert-manager/certificates-readiness "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"selfsigned-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="cert-manager-test/selfsigned-cert" E0602 21:20:35.553189 1 event.go:267] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"selfsigned-cert.18b56069e0347978", GenerateName:"", Namespace:"cert-manager-test", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Certificate", Namespace:"cert-manager-test", Name:"selfsigned-cert", UID:"9b8181a7-1c2f-4ea4-a0b4-f9a58a5cbeb9", APIVersion:"cert-manager.io/v1", ResourceVersion:"1356", FieldPath:""}, Reason:"Issuing", Message:"Issuing certificate as Secret does not exist", Source:v1.EventSource{Component:"cert-manager-certificates-trigger", Host:""}, FirstTimestamp:time.Date(2026, time.June, 2, 21, 20, 35, 544267128, time.Local), LastTimestamp:time.Date(2026, time.June, 2, 21, 20, 35, 544267128, time.Local), Count:1, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "selfsigned-cert.18b56069e0347978" is forbidden: unable to create new content in namespace cert-manager-test because it is being terminated' (will not retry!) I0602 21:20:35.600086 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-selfsigned-issuer" condition "Ready" to 2026-06-02 21:20:35.600069273 +0000 UTC m=+26.285508388 I0602 21:20:35.614481 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Ready" to 2026-06-02 21:20:35.614467523 +0000 UTC m=+26.299906638 I0602 21:20:35.615156 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="capi-system/capi-serving-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0602 21:20:35.615194 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Issuing" to 2026-06-02 21:20:35.615186897 +0000 UTC m=+26.300626032 I0602 21:20:35.636802 1 controller.go:162] cert-manager/certificates-trigger "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-system/capi-serving-cert" I0602 21:20:35.636939 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="capi-system/capi-serving-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0602 21:20:35.636962 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Issuing" to 2026-06-02 21:20:35.636956221 +0000 UTC m=+26.322395356 E0602 21:20:35.789544 1 controller.go:167] cert-manager/certificates-key-manager "msg"="re-queuing item due to error processing" "error"="secrets \"selfsigned-cert-\" is forbidden: unable to create new content in namespace cert-manager-test because it is being terminated" "key"="cert-manager-test/selfsigned-cert" I0602 21:20:35.869294 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-serving-cert-msmxk" condition "Approved" to 2026-06-02 21:20:35.869279066 +0000 UTC m=+26.554718201 I0602 21:20:35.963247 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-serving-cert-msmxk" condition "Ready" to 2026-06-02 21:20:35.963235439 +0000 UTC m=+26.648674564 I0602 21:20:36.072214 1 conditions.go:192] Found status change for Certificate "capi-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-02 21:20:36.072200221 +0000 UTC m=+26.757639346 I0602 21:20:36.121958 1 controller.go:162] cert-manager/certificates-issuing "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-system/capi-serving-cert" I0602 21:20:36.203888 1 controller.go:162] cert-manager/certificates-key-manager "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-system/capi-serving-cert" I0602 21:20:36.292207 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-kubeadm-bootstrap-selfsigned-issuer" condition "Ready" to 2026-06-02 21:20:36.292187871 +0000 UTC m=+26.977627006 I0602 21:20:36.307135 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready" to 2026-06-02 21:20:36.307114113 +0000 UTC m=+26.992553248 I0602 21:20:36.307310 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0602 21:20:36.307372 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Issuing" to 2026-06-02 21:20:36.307358861 +0000 UTC m=+26.992798016 I0602 21:20:36.328819 1 controller.go:162] cert-manager/certificates-readiness "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" I0602 21:20:36.328910 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready" to 2026-06-02 21:20:36.32889998 +0000 UTC m=+27.014339135 I0602 21:20:36.754112 1 controller.go:162] cert-manager/certificates-key-manager "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" I0602 21:20:36.820373 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-kubeadm-control-plane-selfsigned-issuer" condition "Ready" to 2026-06-02 21:20:36.820356927 +0000 UTC m=+27.505796062 I0602 21:20:36.833066 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-bootstrap-serving-cert-85qkr" condition "Approved" to 2026-06-02 21:20:36.833047355 +0000 UTC m=+27.518486480 I0602 21:20:36.837035 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready" to 2026-06-02 21:20:36.837024895 +0000 UTC m=+27.522464030 I0602 21:20:36.837269 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0602 21:20:36.838648 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Issuing" to 2026-06-02 21:20:36.838640939 +0000 UTC m=+27.524080074 I0602 21:20:36.858744 1 controller.go:162] cert-manager/certificates-trigger "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" I0602 21:20:36.858818 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0602 21:20:36.858840 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Issuing" to 2026-06-02 21:20:36.858835213 +0000 UTC m=+27.544274328 I0602 21:20:36.860961 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-bootstrap-serving-cert-85qkr" condition "Ready" to 2026-06-02 21:20:36.860955093 +0000 UTC m=+27.546394218 I0602 21:20:36.921141 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-02 21:20:36.921126574 +0000 UTC m=+27.606565719 I0602 21:20:36.968585 1 controller.go:162] cert-manager/certificates-readiness "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" I0602 21:20:36.969431 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-02 21:20:36.969423303 +0000 UTC m=+27.654862428 I0602 21:20:36.999975 1 controller.go:162] cert-manager/certificates-readiness "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" I0602 21:20:37.000298 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-02 21:20:37.000286029 +0000 UTC m=+27.685725214 I0602 21:20:37.210799 1 conditions.go:96] Setting lastTransitionTime for Issuer "capo-selfsigned-issuer" condition "Ready" to 2026-06-02 21:20:37.210780581 +0000 UTC m=+27.896219716 I0602 21:20:37.228278 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="capo-system/capo-serving-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0602 21:20:37.228327 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Issuing" to 2026-06-02 21:20:37.228319023 +0000 UTC m=+27.913758158 I0602 21:20:37.228981 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Ready" to 2026-06-02 21:20:37.228975334 +0000 UTC m=+27.914414459 I0602 21:20:37.246100 1 controller.go:162] cert-manager/certificates-trigger "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capo-system/capo-serving-cert" I0602 21:20:37.246179 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="capo-system/capo-serving-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0602 21:20:37.246202 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Issuing" to 2026-06-02 21:20:37.246195775 +0000 UTC m=+27.931634920 I0602 21:20:37.466961 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-control-plane-serving-cert-v2hhv" condition "Approved" to 2026-06-02 21:20:37.466942349 +0000 UTC m=+28.152381474 I0602 21:20:37.549819 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-control-plane-serving-cert-v2hhv" condition "Ready" to 2026-06-02 21:20:37.549801279 +0000 UTC m=+28.235240394 I0602 21:20:37.625605 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-02 21:20:37.625592749 +0000 UTC m=+28.311031874 I0602 21:20:37.642970 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capo-serving-cert-8z487" condition "Approved" to 2026-06-02 21:20:37.642959356 +0000 UTC m=+28.328398471 I0602 21:20:37.668876 1 controller.go:162] cert-manager/certificates-issuing "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" I0602 21:20:37.912265 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capo-serving-cert-8z487" condition "Ready" to 2026-06-02 21:20:37.912252481 +0000 UTC m=+28.597691606 I0602 21:20:38.253095 1 conditions.go:192] Found status change for Certificate "capo-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-02 21:20:38.253082348 +0000 UTC m=+28.938521473 I0602 21:20:38.511624 1 controller.go:162] cert-manager/certificates-readiness "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capo-system/capo-serving-cert" I0602 21:20:38.512003 1 conditions.go:192] Found status change for Certificate "capo-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-02 21:20:38.511994722 +0000 UTC m=+29.197433837 I0602 21:20:38.748915 1 controller.go:162] cert-manager/certificates-key-manager "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" I0602 21:20:38.795592 1 controller.go:162] cert-manager/certificates-key-manager "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capo-system/capo-serving-cert" E0602 21:21:47.655351 1 controller.go:137] cert-manager/issuers "msg"="issuer in work queue no longer exists" "error"="issuer.cert-manager.io \"capi-selfsigned-issuer\" not found" I0602 21:21:47.692506 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-selfsigned-issuer" condition "Ready" to 2026-06-02 21:21:47.692485623 +0000 UTC m=+98.377924758 I0602 21:21:47.715978 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Ready" to 2026-06-02 21:21:47.715963914 +0000 UTC m=+98.401403049 E0602 21:21:50.030984 1 controller.go:137] cert-manager/issuers "msg"="issuer in work queue no longer exists" "error"="issuer.cert-manager.io \"capi-kubeadm-bootstrap-selfsigned-issuer\" not found" I0602 21:21:50.079447 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-kubeadm-bootstrap-selfsigned-issuer" condition "Ready" to 2026-06-02 21:21:50.079433477 +0000 UTC m=+100.764872632 I0602 21:21:50.108818 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready" to 2026-06-02 21:21:50.108693458 +0000 UTC m=+100.794132613 E0602 21:21:51.825254 1 controller.go:137] cert-manager/issuers "msg"="issuer in work queue no longer exists" "error"="issuer.cert-manager.io \"capi-kubeadm-control-plane-selfsigned-issuer\" not found" I0602 21:21:51.864584 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-kubeadm-control-plane-selfsigned-issuer" condition "Ready" to 2026-06-02 21:21:51.864561351 +0000 UTC m=+102.550000506 I0602 21:21:51.892361 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready" to 2026-06-02 21:21:51.892335851 +0000 UTC m=+102.577775016 E0602 21:21:53.756520 1 controller.go:137] cert-manager/issuers "msg"="issuer in work queue no longer exists" "error"="issuer.cert-manager.io \"capo-selfsigned-issuer\" not found" I0602 21:21:53.815144 1 conditions.go:96] Setting lastTransitionTime for Issuer "capo-selfsigned-issuer" condition "Ready" to 2026-06-02 21:21:53.815126708 +0000 UTC m=+104.500565843 I0602 21:21:53.843887 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Ready" to 2026-06-02 21:21:53.843876391 +0000 UTC m=+104.529315516