apiVersion: cert-manager.io/v1 kind: Certificate metadata: creationTimestamp: "2025-12-04T22:34:55Z" generation: 1 labels: service-cert: "" name: keystone-internal-svc namespace: openstack ownerReferences: - apiVersion: core.openstack.org/v1beta1 blockOwnerDeletion: true controller: true kind: OpenStackControlPlane name: controlplane uid: 7675d569-5994-460e-a380-6fb59e7e5e8c resourceVersion: "30683" uid: 751070a1-722a-4472-8e73-443f2591ec9c spec: dnsNames: - keystone-internal.openstack.svc - keystone-internal.openstack.svc.cluster.local duration: 43800h0m0s issuerRef: group: cert-manager.io kind: Issuer name: rootca-internal secretName: cert-keystone-internal-svc secretTemplate: labels: service-cert: "" usages: - key encipherment - digital signature - server auth status: conditions: - lastTransitionTime: "2025-12-04T22:34:56Z" message: Certificate is up to date and has not expired observedGeneration: 1 reason: Ready status: "True" type: Ready notAfter: "2030-12-03T22:34:56Z" notBefore: "2025-12-04T22:34:56Z" renewalTime: "2029-04-04T14:34:56Z" revision: 1