Name: cert-manager-7d4cc89fcb-9nqxf Namespace: cert-manager Priority: 0 Service Account: cert-manager Node: master-0/192.168.34.10 Start Time: Sat, 11 Oct 2025 10:48:15 +0000 Labels: app=cert-manager app.kubernetes.io/component=controller app.kubernetes.io/instance=cert-manager app.kubernetes.io/name=cert-manager app.kubernetes.io/version=v1.17.4 pod-template-hash=7d4cc89fcb Annotations: k8s.ovn.org/pod-networks: {"default":{"ip_addresses":["10.130.0.40/23"],"mac_address":"0a:58:0a:82:00:28","gateway_ips":["10.130.0.1"],"routes":[{"dest":"10.128.0.0... k8s.v1.cni.cncf.io/network-status: [{ "name": "ovn-kubernetes", "interface": "eth0", "ips": [ "10.130.0.40" ], "mac": "0a:58:0a:82:00:28", "default": true, "dns": {} }] openshift.io/scc: restricted-v2 prometheus.io/path: /metrics prometheus.io/port: 9402 prometheus.io/scrape: true seccomp.security.alpha.kubernetes.io/pod: runtime/default Status: Running SeccompProfile: RuntimeDefault IP: 10.130.0.40 IPs: IP: 10.130.0.40 Controlled By: ReplicaSet/cert-manager-7d4cc89fcb Containers: cert-manager-controller: Container ID: cri-o://30fd3faaf46dd915bca4f2363c1729938ca49265cabbdd70259cfbd58b1e4c40 Image: registry.redhat.io/cert-manager/jetstack-cert-manager-rhel9@sha256:96d51e3a64bf30cbd92836c7cbd82f06edca16eef78ab1432757d34c16628659 Image ID: registry.redhat.io/cert-manager/jetstack-cert-manager-rhel9@sha256:71996bffd7fe18b8273f2926f7b3bb60c900ce30e4cd13dcc2dcac50e7df99f0 Ports: 9402/TCP, 9403/TCP Host Ports: 0/TCP, 0/TCP Command: /app/cmd/controller/controller Args: --acme-http01-solver-image=registry.redhat.io/cert-manager/jetstack-cert-manager-acmesolver-rhel9@sha256:4f7c045819c39e176a6090efdaba6ec736edf772d88fc87dd1c6fb33d3b5b26b --cluster-resource-namespace=$(POD_NAMESPACE) --leader-election-namespace=kube-system --max-concurrent-challenges=60 --v=2 State: Running Started: Sat, 11 Oct 2025 10:48:16 +0000 Ready: True Restart Count: 0 Liveness: http-get http://:http-healthz/livez delay=10s timeout=15s period=10s #success=1 #failure=8 Environment: POD_NAMESPACE: cert-manager (v1:metadata.namespace) Mounts: /var/run/secrets/kubernetes.io/serviceaccount from kube-api-access-q2c8f (ro) /var/run/secrets/openshift/serviceaccount from bound-sa-token (ro) Conditions: Type Status PodReadyToStartContainers True Initialized True Ready True ContainersReady True PodScheduled True Volumes: bound-sa-token: Type: Projected (a volume that contains injected data from multiple sources) TokenExpirationSeconds: 3600 kube-api-access-q2c8f: Type: Projected (a volume that contains injected data from multiple sources) TokenExpirationSeconds: 3607 ConfigMapName: kube-root-ca.crt ConfigMapOptional: DownwardAPI: true ConfigMapName: openshift-service-ca.crt ConfigMapOptional: QoS Class: BestEffort Node-Selectors: kubernetes.io/os=linux Tolerations: node.kubernetes.io/not-ready:NoExecute op=Exists for 300s node.kubernetes.io/unreachable:NoExecute op=Exists for 300s Events: Type Reason Age From Message ---- ------ ---- ---- ------- Normal Scheduled 47m default-scheduler Successfully assigned cert-manager/cert-manager-7d4cc89fcb-9nqxf to master-0 Normal AddedInterface 47m multus Add eth0 [10.130.0.40/23] from ovn-kubernetes Normal Pulled 47m kubelet Container image "registry.redhat.io/cert-manager/jetstack-cert-manager-rhel9@sha256:96d51e3a64bf30cbd92836c7cbd82f06edca16eef78ab1432757d34c16628659" already present on machine Normal Created 47m kubelet Created container: cert-manager-controller Normal Started 47m kubelet Started container cert-manager-controller