Name:             cert-manager-webhook-d969966f-2746m
Namespace:        cert-manager
Priority:         0
Service Account:  cert-manager-webhook
Node:             crc/192.168.126.11
Start Time:       Thu, 02 Oct 2025 11:25:57 +0000
Labels:           app=webhook
                  app.kubernetes.io/component=webhook
                  app.kubernetes.io/instance=cert-manager
                  app.kubernetes.io/name=webhook
                  app.kubernetes.io/version=v1.17.4
                  pod-template-hash=d969966f
Annotations:      k8s.ovn.org/pod-networks:
                    {"default":{"ip_addresses":["10.217.0.66/23"],"mac_address":"0a:58:0a:d9:00:42","gateway_ips":["10.217.0.1"],"routes":[{"dest":"10.217.0.0...
                  k8s.v1.cni.cncf.io/network-status:
                    [{
                        "name": "ovn-kubernetes",
                        "interface": "eth0",
                        "ips": [
                            "10.217.0.66"
                        ],
                        "mac": "0a:58:0a:d9:00:42",
                        "default": true,
                        "dns": {}
                    }]
                  openshift.io/scc: restricted-v2
                  prometheus.io/path: /metrics
                  prometheus.io/port: 9402
                  prometheus.io/scrape: true
                  seccomp.security.alpha.kubernetes.io/pod: runtime/default
Status:           Running
SeccompProfile:   RuntimeDefault
IP:               10.217.0.66
IPs:
  IP:           10.217.0.66
Controlled By:  ReplicaSet/cert-manager-webhook-d969966f
Containers:
  cert-manager-webhook:
    Container ID:  cri-o://d1047f1a97d050306e3f2d2224ab487c5eed3879ded49eb26b0c062c43eb2a95
    Image:         registry.redhat.io/cert-manager/jetstack-cert-manager-rhel9@sha256:96d51e3a64bf30cbd92836c7cbd82f06edca16eef78ab1432757d34c16628659
    Image ID:      registry.redhat.io/cert-manager/jetstack-cert-manager-rhel9@sha256:71996bffd7fe18b8273f2926f7b3bb60c900ce30e4cd13dcc2dcac50e7df99f0
    Ports:         10250/TCP, 6080/TCP, 9402/TCP
    Host Ports:    0/TCP, 0/TCP, 0/TCP
    Command:
      /app/cmd/webhook/webhook
    Args:
      --dynamic-serving-ca-secret-name=cert-manager-webhook-ca
      --dynamic-serving-ca-secret-namespace=$(POD_NAMESPACE)
      --dynamic-serving-dns-names=cert-manager-webhook,cert-manager-webhook.$(POD_NAMESPACE),cert-manager-webhook.$(POD_NAMESPACE).svc
      --secure-port=10250
      --v=2
    State:          Running
      Started:      Thu, 02 Oct 2025 11:26:02 +0000
    Ready:          True
    Restart Count:  0
    Liveness:       http-get http://:6080/livez delay=60s timeout=1s period=10s #success=1 #failure=3
    Readiness:      http-get http://:6080/healthz delay=5s timeout=1s period=5s #success=1 #failure=3
    Environment:
      POD_NAMESPACE:  cert-manager (v1:metadata.namespace)
    Mounts:
      /var/run/secrets/kubernetes.io/serviceaccount from kube-api-access-wzqb9 (ro)
      /var/run/secrets/openshift/serviceaccount from bound-sa-token (ro)
Conditions:
  Type                        Status
  PodReadyToStartContainers   True 
  Initialized                 True 
  Ready                       True 
  ContainersReady             True 
  PodScheduled                True 
Volumes:
  bound-sa-token:
    Type:                    Projected (a volume that contains injected data from multiple sources)
    TokenExpirationSeconds:  3600
  kube-api-access-wzqb9:
    Type:                    Projected (a volume that contains injected data from multiple sources)
    TokenExpirationSeconds:  3607
    ConfigMapName:           kube-root-ca.crt
    ConfigMapOptional:       <nil>
    DownwardAPI:             true
    ConfigMapName:           openshift-service-ca.crt
    ConfigMapOptional:       <nil>
QoS Class:                   BestEffort
Node-Selectors:              kubernetes.io/os=linux
Tolerations:                 node.kubernetes.io/not-ready:NoExecute op=Exists for 300s
                             node.kubernetes.io/unreachable:NoExecute op=Exists for 300s
Events:
  Type    Reason          Age   From               Message
  ----    ------          ----  ----               -------
  Normal  Scheduled       156m  default-scheduler  Successfully assigned cert-manager/cert-manager-webhook-d969966f-2746m to crc
  Normal  AddedInterface  156m  multus             Add eth0 [10.217.0.66/23] from ovn-kubernetes
  Normal  Pulling         156m  kubelet            Pulling image "registry.redhat.io/cert-manager/jetstack-cert-manager-rhel9@sha256:96d51e3a64bf30cbd92836c7cbd82f06edca16eef78ab1432757d34c16628659"
  Normal  Pulled          156m  kubelet            Successfully pulled image "registry.redhat.io/cert-manager/jetstack-cert-manager-rhel9@sha256:96d51e3a64bf30cbd92836c7cbd82f06edca16eef78ab1432757d34c16628659" in 3.934s (3.934s including waiting). Image size: 427067271 bytes.
  Normal  Created         156m  kubelet            Created container cert-manager-webhook
  Normal  Started         156m  kubelet            Started container cert-manager-webhook
