apiVersion: cert-manager.io/v1 kind: Certificate metadata: creationTimestamp: "2025-10-11T10:54:22Z" generation: 1 labels: service-cert: "" name: keystone-internal-svc namespace: openstack ownerReferences: - apiVersion: core.openstack.org/v1beta1 blockOwnerDeletion: true controller: true kind: OpenStackControlPlane name: controlplane uid: b58026d9-78f6-41aa-860f-3c207e5b077b resourceVersion: "39017" uid: 5d967185-c226-4a59-8388-aac758c3366b spec: dnsNames: - keystone-internal.openstack.svc - keystone-internal.openstack.svc.cluster.local duration: 43800h0m0s issuerRef: group: cert-manager.io kind: Issuer name: rootca-internal secretName: cert-keystone-internal-svc secretTemplate: labels: service-cert: "" usages: - key encipherment - digital signature - server auth status: conditions: - lastTransitionTime: "2025-10-11T10:54:23Z" message: Certificate is up to date and has not expired observedGeneration: 1 reason: Ready status: "True" type: Ready notAfter: "2030-10-10T10:54:23Z" notBefore: "2025-10-11T10:54:23Z" renewalTime: "2029-02-09T02:54:23Z" revision: 1