I0401 10:17:12.866369 1 feature_gate.go:249] feature gates: &{map[AdditionalCertificateOutputFormats:true]} I0401 10:17:12.866621 1 start.go:75] cert-manager "msg"="starting controller" "git-commit"="b1d501c85d97afd2adde2e86c2b119ac060caece" "version"="v1.11.5" I0401 10:17:12.866682 1 controller.go:242] cert-manager/controller/build-context "msg"="configured acme dns01 nameservers" "nameservers"=["10.96.0.10:53"] W0401 10:17:12.866773 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0401 10:17:12.868114 1 controller.go:70] cert-manager/controller "msg"="enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" I0401 10:17:12.868578 1 controller.go:134] cert-manager/controller "msg"="starting leader election" I0401 10:17:12.869019 1 controller.go:91] cert-manager/controller "msg"="starting metrics server" "address"={"IP":"::","Port":9402,"Zone":""} I0401 10:17:12.871611 1 leaderelection.go:248] attempting to acquire leader lease cert-manager/cert-manager-controller... I0401 10:17:12.888115 1 leaderelection.go:258] successfully acquired lease cert-manager/cert-manager-controller I0401 10:17:12.891033 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="clusterissuers" I0401 10:17:12.893500 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificaterequests-issuer-acme" I0401 10:17:12.897306 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-metrics" I0401 10:17:12.897320 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificaterequests-issuer-selfsigned" I0401 10:17:12.897480 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-readiness" I0401 10:17:12.897829 1 controller.go:182] cert-manager/controller "msg"="not starting controller as it's disabled" "controller"="certificatesigningrequests-issuer-acme" I0401 10:17:12.897950 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-request-manager" I0401 10:17:12.898554 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="ingress-shim" I0401 10:17:12.899127 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificaterequests-issuer-vault" I0401 10:17:12.900974 1 controller.go:182] cert-manager/controller "msg"="not starting controller as it's disabled" "controller"="certificatesigningrequests-issuer-ca" I0401 10:17:12.901028 1 controller.go:182] cert-manager/controller "msg"="not starting controller as it's disabled" "controller"="certificatesigningrequests-issuer-selfsigned" I0401 10:17:12.901083 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-revision-manager" I0401 10:17:12.901129 1 controller.go:182] cert-manager/controller "msg"="not starting controller as it's disabled" "controller"="certificatesigningrequests-issuer-venafi" I0401 10:17:12.902038 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="challenges" I0401 10:17:12.902426 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="orders" I0401 10:17:12.902966 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificaterequests-approver" I0401 10:17:12.903376 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-key-manager" I0401 10:17:12.903662 1 controller.go:182] cert-manager/controller "msg"="not starting controller as it's disabled" "controller"="gateway-shim" I0401 10:17:12.903733 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="issuers" I0401 10:17:12.904459 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificaterequests-issuer-ca" I0401 10:17:12.904865 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificaterequests-issuer-venafi" I0401 10:17:12.909164 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-issuing" I0401 10:17:12.910243 1 controller.go:182] cert-manager/controller "msg"="not starting controller as it's disabled" "controller"="certificatesigningrequests-issuer-vault" I0401 10:17:12.910686 1 controller.go:205] cert-manager/controller "msg"="starting controller" "controller"="certificates-trigger" I0401 10:17:38.496953 1 conditions.go:96] Setting lastTransitionTime for Issuer "test-selfsigned" condition "Ready" to 2026-04-01 10:17:38.496901809 +0000 UTC m=+25.667314541 I0401 10:17:38.509910 1 conditions.go:203] Setting lastTransitionTime for Certificate "selfsigned-cert" condition "Ready" to 2026-04-01 10:17:38.509901165 +0000 UTC m=+25.680313877 I0401 10:17:38.510030 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="cert-manager-test/selfsigned-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0401 10:17:38.510086 1 conditions.go:203] Setting lastTransitionTime for Certificate "selfsigned-cert" condition "Issuing" to 2026-04-01 10:17:38.510079805 +0000 UTC m=+25.680492517 E0401 10:17:38.524947 1 event.go:267] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"selfsigned-cert.18a234415fd17efd", GenerateName:"", Namespace:"cert-manager-test", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Certificate", Namespace:"cert-manager-test", Name:"selfsigned-cert", UID:"1bfe13e1-366b-403b-8fea-aaa950388d7e", APIVersion:"cert-manager.io/v1", ResourceVersion:"1302", FieldPath:""}, Reason:"Issuing", Message:"Issuing certificate as Secret does not exist", Source:v1.EventSource{Component:"cert-manager-certificates-trigger", Host:""}, FirstTimestamp:time.Date(2026, time.April, 1, 10, 17, 38, 522480381, time.Local), LastTimestamp:time.Date(2026, time.April, 1, 10, 17, 38, 522480381, time.Local), Count:1, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "selfsigned-cert.18a234415fd17efd" is forbidden: unable to create new content in namespace cert-manager-test because it is being terminated' (will not retry!) I0401 10:17:38.526741 1 controller.go:162] cert-manager/certificates-readiness "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"selfsigned-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="cert-manager-test/selfsigned-cert" I0401 10:17:38.526848 1 conditions.go:203] Setting lastTransitionTime for Certificate "selfsigned-cert" condition "Ready" to 2026-04-01 10:17:38.526841543 +0000 UTC m=+25.697254245 E0401 10:17:38.528803 1 controller.go:137] cert-manager/issuers "msg"="issuer in work queue no longer exists" "error"="issuer.cert-manager.io \"test-selfsigned\" not found" E0401 10:17:38.559485 1 controller.go:167] cert-manager/certificates-readiness "msg"="re-queuing item due to error processing" "error"="certificates.cert-manager.io \"selfsigned-cert\" not found" "key"="cert-manager-test/selfsigned-cert" I0401 10:17:38.619872 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-selfsigned-issuer" condition "Ready" to 2026-04-01 10:17:38.619859137 +0000 UTC m=+25.790271879 I0401 10:17:38.641933 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Ready" to 2026-04-01 10:17:38.641928228 +0000 UTC m=+25.812340930 I0401 10:17:38.642023 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="capi-system/capi-serving-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0401 10:17:38.642072 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Issuing" to 2026-04-01 10:17:38.642062778 +0000 UTC m=+25.812475490 I0401 10:17:38.665593 1 controller.go:162] cert-manager/certificates-trigger "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-system/capi-serving-cert" I0401 10:17:38.665743 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="capi-system/capi-serving-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0401 10:17:38.665767 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Issuing" to 2026-04-01 10:17:38.665762049 +0000 UTC m=+25.836174791 E0401 10:17:38.798806 1 controller.go:167] cert-manager/certificates-key-manager "msg"="re-queuing item due to error processing" "error"="secrets \"selfsigned-cert-\" is forbidden: unable to create new content in namespace cert-manager-test because it is being terminated" "key"="cert-manager-test/selfsigned-cert" I0401 10:17:38.890804 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-serving-cert-2wnh7" condition "Approved" to 2026-04-01 10:17:38.890788846 +0000 UTC m=+26.061201578 I0401 10:17:39.372680 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-serving-cert-2wnh7" condition "Ready" to 2026-04-01 10:17:39.372663856 +0000 UTC m=+26.543076558 I0401 10:17:39.480647 1 conditions.go:192] Found status change for Certificate "capi-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-01 10:17:39.480636197 +0000 UTC m=+26.651048899 I0401 10:17:39.529367 1 controller.go:162] cert-manager/certificates-issuing "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-system/capi-serving-cert" I0401 10:17:39.624367 1 controller.go:162] cert-manager/certificates-key-manager "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-system/capi-serving-cert" I0401 10:17:39.835791 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-kubeadm-bootstrap-selfsigned-issuer" condition "Ready" to 2026-04-01 10:17:39.835777416 +0000 UTC m=+27.006190158 I0401 10:17:39.857073 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0401 10:17:39.857105 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Issuing" to 2026-04-01 10:17:39.857099306 +0000 UTC m=+27.027512028 I0401 10:17:39.857466 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready" to 2026-04-01 10:17:39.857461717 +0000 UTC m=+27.027874429 I0401 10:17:39.874695 1 controller.go:162] cert-manager/certificates-readiness "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" I0401 10:17:39.874828 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready" to 2026-04-01 10:17:39.874821475 +0000 UTC m=+27.045234177 I0401 10:17:40.103817 1 controller.go:162] cert-manager/certificates-key-manager "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" I0401 10:17:40.171861 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-bootstrap-serving-cert-xr7ch" condition "Approved" to 2026-04-01 10:17:40.171852256 +0000 UTC m=+27.342264958 I0401 10:17:40.250983 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-bootstrap-serving-cert-xr7ch" condition "Ready" to 2026-04-01 10:17:40.250974124 +0000 UTC m=+27.421386826 I0401 10:17:40.266119 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-kubeadm-control-plane-selfsigned-issuer" condition "Ready" to 2026-04-01 10:17:40.266106551 +0000 UTC m=+27.436519253 I0401 10:17:40.278799 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready" to 2026-04-01 10:17:40.278789287 +0000 UTC m=+27.449201999 I0401 10:17:40.278880 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0401 10:17:40.278901 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Issuing" to 2026-04-01 10:17:40.278895867 +0000 UTC m=+27.449308579 I0401 10:17:40.295223 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-01 10:17:40.295211755 +0000 UTC m=+27.465624467 I0401 10:17:40.311194 1 controller.go:162] cert-manager/certificates-trigger "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" I0401 10:17:40.311244 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0401 10:17:40.311260 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Issuing" to 2026-04-01 10:17:40.311255483 +0000 UTC m=+27.481668195 I0401 10:17:40.324718 1 controller.go:162] cert-manager/certificates-readiness "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" I0401 10:17:40.325124 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-01 10:17:40.325118779 +0000 UTC m=+27.495531481 I0401 10:17:40.336968 1 controller.go:162] cert-manager/certificates-readiness "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" I0401 10:17:40.338600 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-01 10:17:40.338582626 +0000 UTC m=+27.508995348 I0401 10:17:40.928016 1 controller.go:162] cert-manager/certificates-key-manager "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" I0401 10:17:40.969802 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-control-plane-serving-cert-kp2kb" condition "Approved" to 2026-04-01 10:17:40.969783976 +0000 UTC m=+28.140196728 I0401 10:17:41.046250 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-control-plane-serving-cert-kp2kb" condition "Ready" to 2026-04-01 10:17:41.046239561 +0000 UTC m=+28.216652283 I0401 10:17:41.239639 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-01 10:17:41.239627883 +0000 UTC m=+28.410040595 I0401 10:17:41.313800 1 controller.go:162] cert-manager/certificates-readiness "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" I0401 10:17:41.314079 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-01 10:17:41.314072279 +0000 UTC m=+28.484484991 I0401 10:17:41.516746 1 controller.go:162] cert-manager/certificates-key-manager "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" I0401 10:17:41.655167 1 conditions.go:96] Setting lastTransitionTime for Issuer "capo-selfsigned-issuer" condition "Ready" to 2026-04-01 10:17:41.655157221 +0000 UTC m=+28.825569923 I0401 10:17:41.732302 1 trigger_controller.go:200] cert-manager/certificates-trigger "msg"="Certificate must be re-issued" "key"="capo-system/capo-serving-cert" "message"="Issuing certificate as Secret does not exist" "reason"="DoesNotExist" I0401 10:17:41.732342 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Issuing" to 2026-04-01 10:17:41.732333398 +0000 UTC m=+28.902746140 I0401 10:17:41.732880 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Ready" to 2026-04-01 10:17:41.732871268 +0000 UTC m=+28.903284010 I0401 10:17:41.760986 1 controller.go:162] cert-manager/certificates-readiness "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capo-system/capo-serving-cert" I0401 10:17:41.761049 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Ready" to 2026-04-01 10:17:41.761043291 +0000 UTC m=+28.931456003 I0401 10:17:42.339393 1 controller.go:162] cert-manager/certificates-key-manager "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capo-system/capo-serving-cert" I0401 10:17:42.446884 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capo-serving-cert-vn5dc" condition "Approved" to 2026-04-01 10:17:42.446862248 +0000 UTC m=+29.617275030 I0401 10:17:42.490478 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capo-serving-cert-vn5dc" condition "Ready" to 2026-04-01 10:17:42.490467329 +0000 UTC m=+29.660880041 I0401 10:17:42.777749 1 conditions.go:192] Found status change for Certificate "capo-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-01 10:17:42.777739665 +0000 UTC m=+29.948152377 I0401 10:17:42.826606 1 controller.go:162] cert-manager/certificates-issuing "msg"="re-queuing item due to optimistic locking on resource" "error"="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" "key"="capo-system/capo-serving-cert" E0401 10:19:20.696044 1 controller.go:137] cert-manager/issuers "msg"="issuer in work queue no longer exists" "error"="issuer.cert-manager.io \"capi-selfsigned-issuer\" not found" I0401 10:19:20.744942 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-selfsigned-issuer" condition "Ready" to 2026-04-01 10:19:20.744901192 +0000 UTC m=+127.915313904 I0401 10:19:20.825661 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Ready" to 2026-04-01 10:19:20.825646871 +0000 UTC m=+127.996059613 E0401 10:19:23.517595 1 controller.go:137] cert-manager/issuers "msg"="issuer in work queue no longer exists" "error"="issuer.cert-manager.io \"capi-kubeadm-bootstrap-selfsigned-issuer\" not found" I0401 10:19:23.710629 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-kubeadm-bootstrap-selfsigned-issuer" condition "Ready" to 2026-04-01 10:19:23.710610983 +0000 UTC m=+130.881023725 I0401 10:19:23.800033 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready" to 2026-04-01 10:19:23.800016445 +0000 UTC m=+130.970429187 E0401 10:19:25.991261 1 controller.go:137] cert-manager/issuers "msg"="issuer in work queue no longer exists" "error"="issuer.cert-manager.io \"capi-kubeadm-control-plane-selfsigned-issuer\" not found" I0401 10:19:26.036307 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-kubeadm-control-plane-selfsigned-issuer" condition "Ready" to 2026-04-01 10:19:26.036291188 +0000 UTC m=+133.206703900 I0401 10:19:26.058408 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready" to 2026-04-01 10:19:26.058392109 +0000 UTC m=+133.228804851 E0401 10:19:27.906555 1 controller.go:137] cert-manager/issuers "msg"="issuer in work queue no longer exists" "error"="issuer.cert-manager.io \"capo-selfsigned-issuer\" not found" I0401 10:19:27.954490 1 conditions.go:96] Setting lastTransitionTime for Issuer "capo-selfsigned-issuer" condition "Ready" to 2026-04-01 10:19:27.954479172 +0000 UTC m=+135.124891884 I0401 10:19:27.973315 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Ready" to 2026-04-01 10:19:27.973303201 +0000 UTC m=+135.143715913