Name: cert-manager-webhook-6c686875f4-2xb5k Namespace: cert-manager Priority: 0 Service Account: cert-manager-webhook Node: controller/162.253.55.36 Start Time: Mon, 30 Mar 2026 21:09:55 +0000 Labels: app=webhook app.kubernetes.io/component=webhook app.kubernetes.io/instance=cert-manager app.kubernetes.io/managed-by=Helm app.kubernetes.io/name=webhook app.kubernetes.io/version=v1.15.5 helm.sh/chart=cert-manager-v1.15.5 pod-template-hash=6c686875f4 Annotations: Status: Running SeccompProfile: RuntimeDefault IP: 172.24.0.12 IPs: IP: 172.24.0.12 Controlled By: ReplicaSet/cert-manager-webhook-6c686875f4 Containers: cert-manager-webhook: Container ID: containerd://93f3ab3777afa69d1ce345f7cb69abc1144b910ae8890918dc12db88d46d76c4 Image: quay.io/jetstack/cert-manager-webhook:v1.15.5 Image ID: quay.io/jetstack/cert-manager-webhook@sha256:abd5e27b44dfa1af891cc6e063288c54091c120ce6aaf90d4998b4754defb593 Ports: 10250/TCP (https), 6080/TCP (healthcheck) Host Ports: 0/TCP (https), 0/TCP (healthcheck) Args: --v=2 --secure-port=10250 --dynamic-serving-ca-secret-namespace=$(POD_NAMESPACE) --dynamic-serving-ca-secret-name=cert-manager-webhook-ca --dynamic-serving-dns-names=cert-manager-webhook --dynamic-serving-dns-names=cert-manager-webhook.$(POD_NAMESPACE) --dynamic-serving-dns-names=cert-manager-webhook.$(POD_NAMESPACE).svc State: Running Started: Mon, 30 Mar 2026 21:10:02 +0000 Ready: True Restart Count: 0 Liveness: http-get http://:6080/livez delay=60s timeout=1s period=10s #success=1 #failure=3 Readiness: http-get http://:6080/healthz delay=5s timeout=1s period=5s #success=1 #failure=3 Environment: POD_NAMESPACE: cert-manager (v1:metadata.namespace) Mounts: /var/run/secrets/kubernetes.io/serviceaccount from kube-api-access-66299 (ro) Conditions: Type Status PodReadyToStartContainers True Initialized True Ready True ContainersReady True PodScheduled True Volumes: kube-api-access-66299: Type: Projected (a volume that contains injected data from multiple sources) TokenExpirationSeconds: 3607 ConfigMapName: kube-root-ca.crt Optional: false DownwardAPI: true QoS Class: BestEffort Node-Selectors: kubernetes.io/os=linux Tolerations: node.kubernetes.io/not-ready:NoExecute op=Exists for 300s node.kubernetes.io/unreachable:NoExecute op=Exists for 300s Events: Type Reason Age From Message ---- ------ ---- ---- ------- Normal Scheduled 3m33s default-scheduler Successfully assigned cert-manager/cert-manager-webhook-6c686875f4-2xb5k to controller Warning FailedMount 3m32s kubelet MountVolume.SetUp failed for volume "kube-api-access-66299" : failed to sync configmap cache: timed out waiting for the condition Normal Pulling 3m31s kubelet Pulling image "quay.io/jetstack/cert-manager-webhook:v1.15.5" Normal Pulled 3m26s kubelet Successfully pulled image "quay.io/jetstack/cert-manager-webhook:v1.15.5" in 1.578s (4.287s including waiting). Image size: 17381070 bytes. Normal Created 3m26s kubelet Created container: cert-manager-webhook Normal Started 3m26s kubelet Started container cert-manager-webhook