I1203 20:21:11.195994 1 envvar.go:172] "Feature gate default state" feature="InformerResourceVersion" enabled=false I1203 20:21:11.196107 1 envvar.go:172] "Feature gate default state" feature="WatchListClient" enabled=false I1203 20:21:11.196111 1 envvar.go:172] "Feature gate default state" feature="ClientsAllowCBOR" enabled=false I1203 20:21:11.196115 1 envvar.go:172] "Feature gate default state" feature="ClientsPreferCBOR" enabled=false I1203 20:21:11.201626 1 webhook.go:132] "using dynamic certificate generating using CA stored in Secret resource" logger="cert-manager.webhook.webhook" secret_namespace="cert-manager" secret_name="cert-manager-webhook-ca" I1203 20:21:11.201649 1 webhook.go:144] "serving insecurely as tls certificate data not provided" logger="cert-manager.webhook.webhook" I1203 20:21:11.203922 1 server.go:192] "listening for insecure healthz connections" logger="cert-manager.webhook" address=6080 I1203 20:21:11.204030 1 server.go:183] "Registering webhook" logger="cert-manager.controller-runtime.webhook" path="/mutate" I1203 20:21:11.204070 1 server.go:183] "Registering webhook" logger="cert-manager.controller-runtime.webhook" path="/validate" I1203 20:21:11.204103 1 server.go:208] "Starting metrics server" logger="cert-manager.controller-runtime.metrics" I1203 20:21:11.204205 1 server.go:247] "Serving metrics server" logger="cert-manager.controller-runtime.metrics" bindAddress="0.0.0.0:9402" secure=false I1203 20:21:11.204447 1 server.go:191] "Starting webhook server" logger="cert-manager.controller-runtime.webhook" I1203 20:21:11.204490 1 server.go:242] "Serving webhook server" logger="cert-manager.controller-runtime.webhook" host="" port=10250 E1203 20:21:11.217631 1 dynamic_source.go:221] "Failed to generate serving certificate, retrying..." err="no tls.Certificate available yet, try again later" logger="cert-manager" interval="1s" I1203 20:21:11.223878 1 reflector.go:376] Caches populated for *v1.Secret from pkg/mod/k8s.io/client-go@v0.32.0/tools/cache/reflector.go:251 I1203 20:21:11.316172 1 authority.go:273] "Will regenerate CA" logger="cert-manager" reason="CA secret not found" I1203 20:21:11.371204 1 authority.go:416] "Created new root CA Secret" logger="cert-manager" I1203 20:21:11.373396 1 authority.go:293] "Detected change in CA secret data, update current CA data and notify watches" logger="cert-manager" I1203 20:21:12.207383 1 dynamic_source.go:290] "Updated cert-manager TLS certificate" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"] I1203 20:21:12.207428 1 dynamic_source.go:172] "Detected root CA rotation - regenerating serving certificates" logger="cert-manager" I1203 20:21:12.209898 1 dynamic_source.go:290] "Updated cert-manager TLS certificate" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"] I1203 20:21:20.570083 1 ???:1] "http: TLS handshake error from 10.128.0.10:48006: remote error: tls: bad certificate" I1203 20:24:13.800713 1 ???:1] "http: TLS handshake error from 10.128.0.2:59300: EOF" I1203 20:24:13.962872 1 ???:1] "http: TLS handshake error from 10.128.0.2:59328: read tcp 10.128.0.127:10250->10.128.0.2:59328: read: connection reset by peer" I1203 20:24:14.088205 1 ???:1] "http: TLS handshake error from 10.128.0.2:59344: EOF" I1203 20:24:14.088390 1 ???:1] "http: TLS handshake error from 10.128.0.2:59354: EOF" I1203 20:24:14.088903 1 ???:1] "http: TLS handshake error from 10.128.0.2:59358: EOF" I1203 20:24:32.849306 1 ???:1] "http: TLS handshake error from 10.128.0.2:44078: EOF" I1203 20:24:32.850349 1 ???:1] "http: TLS handshake error from 10.128.0.2:44074: EOF"