Name: cert-manager-webhook-d969966f-nb76r Namespace: cert-manager Priority: 0 Service Account: cert-manager-webhook Node: master-0/192.168.34.10 Start Time: Sat, 11 Oct 2025 10:47:55 +0000 Labels: app=webhook app.kubernetes.io/component=webhook app.kubernetes.io/instance=cert-manager app.kubernetes.io/name=webhook app.kubernetes.io/version=v1.17.4 pod-template-hash=d969966f Annotations: k8s.ovn.org/pod-networks: {"default":{"ip_addresses":["10.130.0.34/23"],"mac_address":"0a:58:0a:82:00:22","gateway_ips":["10.130.0.1"],"routes":[{"dest":"10.128.0.0... k8s.v1.cni.cncf.io/network-status: [{ "name": "ovn-kubernetes", "interface": "eth0", "ips": [ "10.130.0.34" ], "mac": "0a:58:0a:82:00:22", "default": true, "dns": {} }] openshift.io/scc: restricted-v2 prometheus.io/path: /metrics prometheus.io/port: 9402 prometheus.io/scrape: true seccomp.security.alpha.kubernetes.io/pod: runtime/default Status: Running SeccompProfile: RuntimeDefault IP: 10.130.0.34 IPs: IP: 10.130.0.34 Controlled By: ReplicaSet/cert-manager-webhook-d969966f Containers: cert-manager-webhook: Container ID: cri-o://66674512fe4e633d963250cbabb536c6494725fe376372d0b6e06c069ecf34b0 Image: registry.redhat.io/cert-manager/jetstack-cert-manager-rhel9@sha256:96d51e3a64bf30cbd92836c7cbd82f06edca16eef78ab1432757d34c16628659 Image ID: registry.redhat.io/cert-manager/jetstack-cert-manager-rhel9@sha256:71996bffd7fe18b8273f2926f7b3bb60c900ce30e4cd13dcc2dcac50e7df99f0 Ports: 10250/TCP, 6080/TCP, 9402/TCP Host Ports: 0/TCP, 0/TCP, 0/TCP Command: /app/cmd/webhook/webhook Args: --dynamic-serving-ca-secret-name=cert-manager-webhook-ca --dynamic-serving-ca-secret-namespace=$(POD_NAMESPACE) --dynamic-serving-dns-names=cert-manager-webhook,cert-manager-webhook.$(POD_NAMESPACE),cert-manager-webhook.$(POD_NAMESPACE).svc --secure-port=10250 --v=2 State: Running Started: Sat, 11 Oct 2025 10:48:01 +0000 Ready: True Restart Count: 0 Liveness: http-get http://:6080/livez delay=60s timeout=1s period=10s #success=1 #failure=3 Readiness: http-get http://:6080/healthz delay=5s timeout=1s period=5s #success=1 #failure=3 Environment: POD_NAMESPACE: cert-manager (v1:metadata.namespace) Mounts: /var/run/secrets/kubernetes.io/serviceaccount from kube-api-access-qfcfk (ro) /var/run/secrets/openshift/serviceaccount from bound-sa-token (ro) Conditions: Type Status PodReadyToStartContainers True Initialized True Ready True ContainersReady True PodScheduled True Volumes: bound-sa-token: Type: Projected (a volume that contains injected data from multiple sources) TokenExpirationSeconds: 3600 kube-api-access-qfcfk: Type: Projected (a volume that contains injected data from multiple sources) TokenExpirationSeconds: 3607 ConfigMapName: kube-root-ca.crt ConfigMapOptional: DownwardAPI: true ConfigMapName: openshift-service-ca.crt ConfigMapOptional: QoS Class: BestEffort Node-Selectors: kubernetes.io/os=linux Tolerations: node.kubernetes.io/not-ready:NoExecute op=Exists for 300s node.kubernetes.io/unreachable:NoExecute op=Exists for 300s Events: Type Reason Age From Message ---- ------ ---- ---- ------- Normal Scheduled 47m default-scheduler Successfully assigned cert-manager/cert-manager-webhook-d969966f-nb76r to master-0 Normal AddedInterface 47m multus Add eth0 [10.130.0.34/23] from ovn-kubernetes Normal Pulling 47m kubelet Pulling image "registry.redhat.io/cert-manager/jetstack-cert-manager-rhel9@sha256:96d51e3a64bf30cbd92836c7cbd82f06edca16eef78ab1432757d34c16628659" Normal Pulled 47m kubelet Successfully pulled image "registry.redhat.io/cert-manager/jetstack-cert-manager-rhel9@sha256:96d51e3a64bf30cbd92836c7cbd82f06edca16eef78ab1432757d34c16628659" in 4.178s (4.178s including waiting). Image size: 427067271 bytes. Normal Created 47m kubelet Created container: cert-manager-webhook Normal Started 47m kubelet Started container cert-manager-webhook