Name:             cert-manager-webhook-687f57d79b-6q4m2
Namespace:        cert-manager
Priority:         0
Service Account:  cert-manager-webhook
Node:             crc/192.168.126.11
Start Time:       Mon, 16 Feb 2026 21:49:59 +0000
Labels:           app=webhook
                  app.kubernetes.io/component=webhook
                  app.kubernetes.io/instance=cert-manager
                  app.kubernetes.io/name=webhook
                  app.kubernetes.io/version=v1.19.2
                  pod-template-hash=687f57d79b
Annotations:      k8s.ovn.org/pod-networks:
                    {"default":{"ip_addresses":["10.217.0.19/23"],"mac_address":"0a:58:0a:d9:00:13","gateway_ips":["10.217.0.1"],"routes":[{"dest":"10.217.0.0...
                  k8s.v1.cni.cncf.io/network-status:
                    [{
                        "name": "ovn-kubernetes",
                        "interface": "eth0",
                        "ips": [
                            "10.217.0.19"
                        ],
                        "mac": "0a:58:0a:d9:00:13",
                        "default": true,
                        "dns": {}
                    }]
                  openshift.io/scc: restricted-v2
                  prometheus.io/path: /metrics
                  prometheus.io/port: 9402
                  prometheus.io/scrape: true
                  seccomp.security.alpha.kubernetes.io/pod: runtime/default
Status:           Running
SeccompProfile:   RuntimeDefault
IP:               10.217.0.19
IPs:
  IP:           10.217.0.19
Controlled By:  ReplicaSet/cert-manager-webhook-687f57d79b
Containers:
  cert-manager-webhook:
    Container ID:  cri-o://2fbbd7dca0c186373222b71e94f0c14bd6bc513930648f778e1da3af88b15eef
    Image:         quay.io/jetstack/cert-manager-webhook:v1.19.2
    Image ID:      quay.io/jetstack/cert-manager-webhook@sha256:041f7bb9259557188d7ff416ce90d670a0d0aa8710203927703743682064270b
    Ports:         10250/TCP, 6080/TCP, 9402/TCP
    Host Ports:    0/TCP, 0/TCP, 0/TCP
    Args:
      --v=2
      --secure-port=10250
      --dynamic-serving-ca-secret-namespace=$(POD_NAMESPACE)
      --dynamic-serving-ca-secret-name=cert-manager-webhook-ca
      --dynamic-serving-dns-names=cert-manager-webhook
      --dynamic-serving-dns-names=cert-manager-webhook.$(POD_NAMESPACE)
      --dynamic-serving-dns-names=cert-manager-webhook.$(POD_NAMESPACE).svc
    State:          Running
      Started:      Mon, 16 Feb 2026 21:50:33 +0000
    Ready:          True
    Restart Count:  0
    Liveness:       http-get http://:healthcheck/livez delay=60s timeout=1s period=10s #success=1 #failure=3
    Readiness:      http-get http://:healthcheck/healthz delay=5s timeout=1s period=5s #success=1 #failure=3
    Environment:
      POD_NAMESPACE:  cert-manager (v1:metadata.namespace)
    Mounts:
      /var/run/secrets/kubernetes.io/serviceaccount from kube-api-access-9r96p (ro)
Conditions:
  Type                        Status
  PodReadyToStartContainers   True 
  Initialized                 True 
  Ready                       True 
  ContainersReady             True 
  PodScheduled                True 
Volumes:
  kube-api-access-9r96p:
    Type:                    Projected (a volume that contains injected data from multiple sources)
    TokenExpirationSeconds:  3607
    ConfigMapName:           kube-root-ca.crt
    ConfigMapOptional:       <nil>
    DownwardAPI:             true
    ConfigMapName:           openshift-service-ca.crt
    ConfigMapOptional:       <nil>
QoS Class:                   BestEffort
Node-Selectors:              kubernetes.io/os=linux
Tolerations:                 node.kubernetes.io/not-ready:NoExecute op=Exists for 300s
                             node.kubernetes.io/unreachable:NoExecute op=Exists for 300s
Events:
  Type     Reason                  Age   From               Message
  ----     ------                  ----  ----               -------
  Normal   Scheduled               40m   default-scheduler  Successfully assigned cert-manager/cert-manager-webhook-687f57d79b-6q4m2 to crc
  Warning  FailedCreatePodSandBox  40m   kubelet            Failed to create pod sandbox: rpc error: code = Unknown desc = failed to create pod network sandbox k8s_cert-manager-webhook-687f57d79b-6q4m2_cert-manager_4591e319-88ea-472b-8adc-1aa253262a37_0(f9855ca552c9fbf917f8e37abe15ac6c8daa2280db2056d685f94fc2a6d42898): no CNI configuration file in /etc/kubernetes/cni/net.d/. Has your network provider started?
  Warning  FailedCreatePodSandBox  40m   kubelet            Failed to create pod sandbox: rpc error: code = Unknown desc = failed to create pod network sandbox k8s_cert-manager-webhook-687f57d79b-6q4m2_cert-manager_4591e319-88ea-472b-8adc-1aa253262a37_0(5cfee2b98fbf9503b2af1960a7791fad44f24d7af882e52566949de9c4efd746): no CNI configuration file in /etc/kubernetes/cni/net.d/. Has your network provider started?
  Warning  FailedCreatePodSandBox  40m   kubelet            Failed to create pod sandbox: rpc error: code = Unknown desc = failed to create pod network sandbox k8s_cert-manager-webhook-687f57d79b-6q4m2_cert-manager_4591e319-88ea-472b-8adc-1aa253262a37_0(b9f19fe2f05d433e5c9c081d47a6feb473788471d56984a051b1cb85a5205f5f): no CNI configuration file in /etc/kubernetes/cni/net.d/. Has your network provider started?
  Normal   AddedInterface          39m   multus             Add eth0 [10.217.0.19/23] from ovn-kubernetes
  Normal   Pulling                 39m   kubelet            Pulling image "quay.io/jetstack/cert-manager-webhook:v1.19.2"
  Normal   Pulled                  39m   kubelet            Successfully pulled image "quay.io/jetstack/cert-manager-webhook:v1.19.2" in 3.021s (3.021s including waiting). Image size: 69110520 bytes.
  Normal   Created                 39m   kubelet            Created container cert-manager-webhook
  Normal   Started                 39m   kubelet            Started container cert-manager-webhook
