Name: cert-manager-86cb77c54b-pmtjz Namespace: cert-manager Priority: 0 Service Account: cert-manager Node: master-0/192.168.32.10 Start Time: Wed, 03 Dec 2025 22:17:43 +0000 Labels: app=cert-manager app.kubernetes.io/component=controller app.kubernetes.io/instance=cert-manager app.kubernetes.io/name=cert-manager app.kubernetes.io/version=v1.18.3 pod-template-hash=86cb77c54b Annotations: k8s.ovn.org/pod-networks: {"default":{"ip_addresses":["10.128.0.138/23"],"mac_address":"0a:58:0a:80:00:8a","gateway_ips":["10.128.0.1"],"routes":[{"dest":"10.128.0.... k8s.v1.cni.cncf.io/network-status: [{ "name": "ovn-kubernetes", "interface": "eth0", "ips": [ "10.128.0.138" ], "mac": "0a:58:0a:80:00:8a", "default": true, "dns": {} }] openshift.io/scc: restricted-v2 prometheus.io/path: /metrics prometheus.io/port: 9402 prometheus.io/scrape: true seccomp.security.alpha.kubernetes.io/pod: runtime/default Status: Running SeccompProfile: RuntimeDefault IP: 10.128.0.138 IPs: IP: 10.128.0.138 Controlled By: ReplicaSet/cert-manager-86cb77c54b Containers: cert-manager-controller: Container ID: cri-o://6f1599bf640f2c2b7369e040bf08d3c5e7b9304b678e7d3b61cd2f6865a4d874 Image: registry.redhat.io/cert-manager/jetstack-cert-manager-rhel9@sha256:29a0fa1c2f2a6cee62a0468a3883d16d491b4af29130dad6e3e2bb2948f274df Image ID: registry.redhat.io/cert-manager/jetstack-cert-manager-rhel9@sha256:29a0fa1c2f2a6cee62a0468a3883d16d491b4af29130dad6e3e2bb2948f274df Ports: 9402/TCP, 9403/TCP Host Ports: 0/TCP, 0/TCP Command: /app/cmd/controller/controller Args: --acme-http01-solver-image=registry.redhat.io/cert-manager/jetstack-cert-manager-acmesolver-rhel9@sha256:ba937fc4b9eee31422914352c11a45b90754ba4fbe490ea45249b90afdc4e0a7 --cluster-resource-namespace=$(POD_NAMESPACE) --feature-gates=ACMEHTTP01IngressPathTypeExact=false --leader-election-namespace=kube-system --max-concurrent-challenges=60 --v=2 State: Running Started: Wed, 03 Dec 2025 22:17:44 +0000 Ready: True Restart Count: 0 Liveness: http-get http://:http-healthz/livez delay=10s timeout=15s period=10s #success=1 #failure=8 Environment: POD_NAMESPACE: cert-manager (v1:metadata.namespace) Mounts: /var/run/secrets/kubernetes.io/serviceaccount from kube-api-access-ggmx5 (ro) /var/run/secrets/openshift/serviceaccount from bound-sa-token (ro) Conditions: Type Status PodReadyToStartContainers True Initialized True Ready True ContainersReady True PodScheduled True Volumes: bound-sa-token: Type: Projected (a volume that contains injected data from multiple sources) TokenExpirationSeconds: 3600 kube-api-access-ggmx5: Type: Projected (a volume that contains injected data from multiple sources) TokenExpirationSeconds: 3607 ConfigMapName: kube-root-ca.crt ConfigMapOptional: DownwardAPI: true ConfigMapName: openshift-service-ca.crt ConfigMapOptional: QoS Class: BestEffort Node-Selectors: kubernetes.io/os=linux Tolerations: node.kubernetes.io/not-ready:NoExecute op=Exists for 300s node.kubernetes.io/unreachable:NoExecute op=Exists for 300s Events: Type Reason Age From Message ---- ------ ---- ---- ------- Normal Scheduled 87m default-scheduler Successfully assigned cert-manager/cert-manager-86cb77c54b-pmtjz to master-0 Normal AddedInterface 87m multus Add eth0 [10.128.0.138/23] from ovn-kubernetes Normal Pulled 87m kubelet Container image "registry.redhat.io/cert-manager/jetstack-cert-manager-rhel9@sha256:29a0fa1c2f2a6cee62a0468a3883d16d491b4af29130dad6e3e2bb2948f274df" already present on machine Normal Created 87m kubelet Created container: cert-manager-controller Normal Started 87m kubelet Started container cert-manager-controller