apiVersion: cert-manager.io/v1 kind: Certificate metadata: creationTimestamp: "2025-12-03T22:24:46Z" generation: 1 labels: service-cert: "" name: keystone-internal-svc namespace: openstack ownerReferences: - apiVersion: core.openstack.org/v1beta1 blockOwnerDeletion: true controller: true kind: OpenStackControlPlane name: controlplane uid: baebb606-0aee-480e-936d-ecfd322a7e8c resourceVersion: "31698" uid: e55842f1-bc79-4310-bfc3-a795d295657c spec: dnsNames: - keystone-internal.openstack.svc - keystone-internal.openstack.svc.cluster.local duration: 43800h0m0s issuerRef: group: cert-manager.io kind: Issuer name: rootca-internal secretName: cert-keystone-internal-svc secretTemplate: labels: service-cert: "" usages: - key encipherment - digital signature - server auth status: conditions: - lastTransitionTime: "2025-12-03T22:24:48Z" message: Certificate is up to date and has not expired observedGeneration: 1 reason: Ready status: "True" type: Ready notAfter: "2030-12-02T22:24:48Z" notBefore: "2025-12-03T22:24:48Z" renewalTime: "2029-04-03T14:24:48Z" revision: 1