Kubeintel Logo

Kubeintel

  • Search
  • Pods
  • Deployments
  • Statefulsets
  • jobJobs
  • Daemonsets
  • Namespaces
  • Nodes
  • Services
  • Configmaps
  1. Home
  2. /
  3. namespaces
  4. /
  5. cert-manager
  6. /
  7. pods
  8. /
  9. cert-manager-webhook-5f594df789-xgcjl
  10. /
  11. logs
Summary
Metadata
Containers
Spec
Status
All
Events
Logs
Investigator
Pod Details

Name: cert-manager-webhook-5f594df789-xgcjl

Namespace: cert-manager

Status: Running

IP: 10.244.1.46

Node: system-0-65529

Ready: 1/1

Kubectl Commands
  • View
  • Delete
  • Describe
  • Debug
Containers
Name
Image
Ready
Restarts
...
cert-manager-webhookquay.io/jetstack/cert-manager-webhook:v1...Ready-
  • 1
Metadata

Creation Time: 2025-04-17T22:04:43Z

Labels:

  • app: webhook
  • app.kubernetes.io/component: webhook...
  • app.kubernetes.io/instance: cert-manager...
  • app.kubernetes.io/name: webhook...
  • app.kubernetes.io/version: v1.15.1...
  • pod-template-hash: 5f594df789...
name: cert-manager-webhook-5f594df789-xgcjl
generateName: cert-manager-webhook-5f594df789-
namespace: cert-manager
uid: 14f5fad9-eefe-4a2b-8f52-318c6e5e186f
resourceVersion: '92140015'
creationTimestamp: '2025-04-17T22:04:43Z'
labels:
app: webhook
app.kubernetes.io/component: webhook
app.kubernetes.io/instance: cert-manager
app.kubernetes.io/name: webhook
app.kubernetes.io/version: v1.15.1
pod-template-hash: 5f594df789
ownerReferences:
- apiVersion: apps/v1
kind: ReplicaSet
name: cert-manager-webhook-5f594df789
uid: a49ced6d-ca6b-4cc8-995d-29e882128595
controller: true
blockOwnerDeletion: true
- name: cert-manager-webhook
image: quay.io/jetstack/cert-manager-webhook:v1.15.1
args:
- '--v=2'
- '--secure-port=10250'
- '--dynamic-serving-ca-secret-namespace=$(POD_NAMESPACE)'
- '--dynamic-serving-ca-secret-name=cert-manager-webhook-ca'
- '--dynamic-serving-dns-names=cert-manager-webhook'
- '--dynamic-serving-dns-names=cert-manager-webhook.$(POD_NAMESPACE)'
- '--dynamic-serving-dns-names=cert-manager-webhook.$(POD_NAMESPACE).svc'
ports:
- name: https
containerPort: 10250
protocol: TCP
- name: healthcheck
containerPort: 6080
protocol: TCP
env:
- name: POD_NAMESPACE
valueFrom:
fieldRef:
apiVersion: v1
fieldPath: metadata.namespace
resources: {}
volumeMounts:
- name: kube-api-access-wcqt9
readOnly: true
mountPath: /var/run/secrets/kubernetes.io/serviceaccount
livenessProbe:
httpGet:
path: /livez
port: 6080
scheme: HTTP
initialDelaySeconds: 60
timeoutSeconds: 1
periodSeconds: 10
successThreshold: 1
failureThreshold: 3
readinessProbe:
httpGet:
path: /healthz
port: 6080
scheme: HTTP
initialDelaySeconds: 5
timeoutSeconds: 1
periodSeconds: 5
successThreshold: 1
failureThreshold: 3
terminationMessagePath: /dev/termination-log
terminationMessagePolicy: File
imagePullPolicy: IfNotPresent
securityContext:
capabilities:
drop:
- ALL
readOnlyRootFilesystem: true
allowPrivilegeEscalation: false
volumes:
- name: kube-api-access-wcqt9
projected:
sources:
- serviceAccountToken:
expirationSeconds: 3607
path: token
- configMap:
name: kube-root-ca.crt
items:
- key: ca.crt
path: ca.crt
- downwardAPI:
items:
- path: namespace
fieldRef:
apiVersion: v1
fieldPath: metadata.namespace
defaultMode: 420
containers:
- name: cert-manager-webhook
image: quay.io/jetstack/cert-manager-webhook:v1.15.1
args:
- '--v=2'
- '--secure-port=10250'
- '--dynamic-serving-ca-secret-namespace=$(POD_NAMESPACE)'
- '--dynamic-serving-ca-secret-name=cert-manager-webhook-ca'
- '--dynamic-serving-dns-names=cert-manager-webhook'
- '--dynamic-serving-dns-names=cert-manager-webhook.$(POD_NAMESPACE)'
- '--dynamic-serving-dns-names=cert-manager-webhook.$(POD_NAMESPACE).svc'
ports:
- name: https
containerPort: 10250
protocol: TCP
- name: healthcheck
containerPort: 6080
protocol: TCP
env:
- name: POD_NAMESPACE
valueFrom:
fieldRef:
apiVersion: v1
fieldPath: metadata.namespace
resources: {}
volumeMounts:
- name: kube-api-access-wcqt9
readOnly: true
mountPath: /var/run/secrets/kubernetes.io/serviceaccount
livenessProbe:
httpGet:
path: /livez
port: 6080
scheme: HTTP
initialDelaySeconds: 60
timeoutSeconds: 1
periodSeconds: 10
successThreshold: 1
failureThreshold: 3
readinessProbe:
httpGet:
path: /healthz
port: 6080
scheme: HTTP
initialDelaySeconds: 5
timeoutSeconds: 1
periodSeconds: 5
successThreshold: 1
failureThreshold: 3
terminationMessagePath: /dev/termination-log
terminationMessagePolicy: File
imagePullPolicy: IfNotPresent
securityContext:
capabilities:
drop:
- ALL
readOnlyRootFilesystem: true
allowPrivilegeEscalation: false
restartPolicy: Always
terminationGracePeriodSeconds: 30
dnsPolicy: ClusterFirst
nodeSelector:
kubernetes.io/os: linux
serviceAccountName: cert-manager-webhook
serviceAccount: cert-manager-webhook
nodeName: system-0-65529
securityContext:
runAsNonRoot: true
seccompProfile:
type: RuntimeDefault
schedulerName: default-scheduler
tolerations:
- key: node.kubernetes.io/not-ready
operator: Exists
effect: NoExecute
tolerationSeconds: 300
- key: node.kubernetes.io/unreachable
operator: Exists
effect: NoExecute
tolerationSeconds: 300
priority: 0
enableServiceLinks: false
preemptionPolicy: PreemptLowerPriority
phase: Running
conditions:
- type: PodReadyToStartContainers
status: 'True'
lastProbeTime: null
lastTransitionTime: '2025-04-17T22:04:59Z'
- type: Initialized
status: 'True'
lastProbeTime: null
lastTransitionTime: '2025-04-17T22:04:43Z'
- type: Ready
status: 'True'
lastProbeTime: null
lastTransitionTime: '2025-04-17T22:05:08Z'
- type: ContainersReady
status: 'True'
lastProbeTime: null
lastTransitionTime: '2025-04-17T22:05:08Z'
- type: PodScheduled
status: 'True'
lastProbeTime: null
lastTransitionTime: '2025-04-17T22:04:43Z'
hostIP: 10.108.0.3
podIP: 10.244.1.46
podIPs:
- ip: 10.244.1.46
startTime: '2025-04-17T22:04:43Z'
containerStatuses:
- name: cert-manager-webhook
state:
running:
startedAt: '2025-04-17T22:04:59Z'
lastState: {}
ready: true
restartCount: 0
image: quay.io/jetstack/cert-manager-webhook:v1.15.1
imageID: >-
quay.io/jetstack/cert-manager-webhook@sha256:88901bb0099b9cdade3950d37bfa97fce7fab0e5429d09fa941b8791add84a5f
containerID: >-
containerd://3d58e7027ac51e6a333ed7e2cede0fa97e71e8d7b7dd42939fcf97105f33fb3d
started: true
qosClass: BestEffort
metadata:
name: cert-manager-webhook-5f594df789-xgcjl
generateName: cert-manager-webhook-5f594df789-
namespace: cert-manager
uid: 14f5fad9-eefe-4a2b-8f52-318c6e5e186f
resourceVersion: '92140015'
creationTimestamp: '2025-04-17T22:04:43Z'
labels:
app: webhook
app.kubernetes.io/component: webhook
app.kubernetes.io/instance: cert-manager
app.kubernetes.io/name: webhook
app.kubernetes.io/version: v1.15.1
pod-template-hash: 5f594df789
ownerReferences:
- apiVersion: apps/v1
kind: ReplicaSet
name: cert-manager-webhook-5f594df789
uid: a49ced6d-ca6b-4cc8-995d-29e882128595
controller: true
blockOwnerDeletion: true
spec:
volumes:
- name: kube-api-access-wcqt9
projected:
sources:
- serviceAccountToken:
expirationSeconds: 3607
path: token
- configMap:
name: kube-root-ca.crt
items:
- key: ca.crt
path: ca.crt
- downwardAPI:
items:
- path: namespace
fieldRef:
apiVersion: v1
fieldPath: metadata.namespace
defaultMode: 420
containers:
- name: cert-manager-webhook
image: quay.io/jetstack/cert-manager-webhook:v1.15.1
args:
- '--v=2'
- '--secure-port=10250'
- '--dynamic-serving-ca-secret-namespace=$(POD_NAMESPACE)'
- '--dynamic-serving-ca-secret-name=cert-manager-webhook-ca'
- '--dynamic-serving-dns-names=cert-manager-webhook'
- '--dynamic-serving-dns-names=cert-manager-webhook.$(POD_NAMESPACE)'
- '--dynamic-serving-dns-names=cert-manager-webhook.$(POD_NAMESPACE).svc'
ports:
- name: https
containerPort: 10250
protocol: TCP
- name: healthcheck
containerPort: 6080
protocol: TCP
env:
- name: POD_NAMESPACE
valueFrom:
fieldRef:
apiVersion: v1
fieldPath: metadata.namespace
resources: {}
volumeMounts:
- name: kube-api-access-wcqt9
readOnly: true
mountPath: /var/run/secrets/kubernetes.io/serviceaccount
livenessProbe:
httpGet:
path: /livez
port: 6080
scheme: HTTP
initialDelaySeconds: 60
timeoutSeconds: 1
periodSeconds: 10
successThreshold: 1
failureThreshold: 3
readinessProbe:
httpGet:
path: /healthz
port: 6080
scheme: HTTP
initialDelaySeconds: 5
timeoutSeconds: 1
periodSeconds: 5
successThreshold: 1
failureThreshold: 3
terminationMessagePath: /dev/termination-log
terminationMessagePolicy: File
imagePullPolicy: IfNotPresent
securityContext:
capabilities:
drop:
- ALL
readOnlyRootFilesystem: true
allowPrivilegeEscalation: false
restartPolicy: Always
terminationGracePeriodSeconds: 30
dnsPolicy: ClusterFirst
nodeSelector:
kubernetes.io/os: linux
serviceAccountName: cert-manager-webhook
serviceAccount: cert-manager-webhook
nodeName: system-0-65529
securityContext:
runAsNonRoot: true
seccompProfile:
type: RuntimeDefault
schedulerName: default-scheduler
tolerations:
- key: node.kubernetes.io/not-ready
operator: Exists
effect: NoExecute
tolerationSeconds: 300
- key: node.kubernetes.io/unreachable
operator: Exists
effect: NoExecute
tolerationSeconds: 300
priority: 0
enableServiceLinks: false
preemptionPolicy: PreemptLowerPriority
status:
phase: Running
conditions:
- type: PodReadyToStartContainers
status: 'True'
lastProbeTime: null
lastTransitionTime: '2025-04-17T22:04:59Z'
- type: Initialized
status: 'True'
lastProbeTime: null
lastTransitionTime: '2025-04-17T22:04:43Z'
- type: Ready
status: 'True'
lastProbeTime: null
lastTransitionTime: '2025-04-17T22:05:08Z'
- type: ContainersReady
status: 'True'
lastProbeTime: null
lastTransitionTime: '2025-04-17T22:05:08Z'
- type: PodScheduled
status: 'True'
lastProbeTime: null
lastTransitionTime: '2025-04-17T22:04:43Z'
hostIP: 10.108.0.3
podIP: 10.244.1.46
podIPs:
- ip: 10.244.1.46
startTime: '2025-04-17T22:04:43Z'
containerStatuses:
- name: cert-manager-webhook
state:
running:
startedAt: '2025-04-17T22:04:59Z'
lastState: {}
ready: true
restartCount: 0
image: quay.io/jetstack/cert-manager-webhook:v1.15.1
imageID: >-
quay.io/jetstack/cert-manager-webhook@sha256:88901bb0099b9cdade3950d37bfa97fce7fab0e5429d09fa941b8791add84a5f
containerID: >-
containerd://3d58e7027ac51e6a333ed7e2cede0fa97e71e8d7b7dd42939fcf97105f33fb3d
started: true
qosClass: BestEffort
W0417 22:04:59.076588 1 client_config.go:659] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work.
I0417 22:04:59.079981 1 webhook.go:128] "using dynamic certificate generating using CA stored in Secret resource" logger="cert-manager.webhook.webhook" secret_namespace="cert-manager" secret_name="cert-manager-webhook-ca"
I0417 22:04:59.080569 1 server.go:152] "listening for insecure healthz connections" logger="cert-manager.webhook" address=6080
I0417 22:04:59.080704 1 server.go:183] "Registering webhook" logger="cert-manager.controller-runtime.webhook" path="/mutate"
I0417 22:04:59.080809 1 server.go:183] "Registering webhook" logger="cert-manager.controller-runtime.webhook" path="/validate"
I0417 22:04:59.080848 1 server.go:191] "Starting webhook server" logger="cert-manager.controller-runtime.webhook"
I0417 22:04:59.080895 1 server.go:242] "Serving webhook server" logger="cert-manager.controller-runtime.webhook" host="" port=10250
E0417 22:04:59.085081 1 dynamic_source.go:221] "Failed to generate serving certificate, retrying..." err="failed verifying CA keypair: tls: failed to find any PEM data in certificate input" logger="cert-manager" interval="1s"
I0417 22:04:59.110199 1 reflector.go:359] Caches populated for *v1.Secret from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232
I0417 22:05:00.099051 1 dynamic_source.go:290] "Updated cert-manager TLS certificate" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
I0417 22:05:00.099122 1 dynamic_source.go:172] "Detected root CA rotation - regenerating serving certificates" logger="cert-manager"
I0417 22:05:00.108752 1 dynamic_source.go:290] "Updated cert-manager TLS certificate" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
I0419 07:38:08.648996 1 reflector.go:359] Caches populated for *v1.Secret from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232
I0422 07:41:09.039645 1 reflector.go:359] Caches populated for *v1.Secret from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232
I0422 14:05:00.001403 1 dynamic_source.go:176] "cert-manager webhook certificate requires renewal, regenerating" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
I0422 14:05:00.009825 1 dynamic_source.go:290] "Updated cert-manager TLS certificate" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
I0427 06:05:00.000178 1 dynamic_source.go:176] "cert-manager webhook certificate requires renewal, regenerating" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
I0427 06:05:00.004817 1 dynamic_source.go:290] "Updated cert-manager TLS certificate" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
I0429 12:38:09.141286 1 reflector.go:359] Caches populated for *v1.Secret from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232
I0501 22:05:00.000299 1 dynamic_source.go:176] "cert-manager webhook certificate requires renewal, regenerating" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
I0501 22:05:00.005134 1 dynamic_source.go:290] "Updated cert-manager TLS certificate" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
I0506 14:05:00.000760 1 dynamic_source.go:176] "cert-manager webhook certificate requires renewal, regenerating" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
I0506 14:05:00.006399 1 dynamic_source.go:290] "Updated cert-manager TLS certificate" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
I0511 06:05:00.000297 1 dynamic_source.go:176] "cert-manager webhook certificate requires renewal, regenerating" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
I0511 06:05:00.005465 1 dynamic_source.go:290] "Updated cert-manager TLS certificate" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
I0515 22:05:00.421908 1 dynamic_source.go:176] "cert-manager webhook certificate requires renewal, regenerating" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
I0515 22:05:00.428541 1 dynamic_source.go:290] "Updated cert-manager TLS certificate" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
I0516 08:29:09.388418 1 reflector.go:359] Caches populated for *v1.Secret from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232
I0520 14:05:00.001249 1 dynamic_source.go:176] "cert-manager webhook certificate requires renewal, regenerating" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
I0520 14:05:00.005914 1 dynamic_source.go:290] "Updated cert-manager TLS certificate" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
I0520 22:53:10.552677 1 log.go:245] http: TLS handshake error from 10.244.1.28:50090: EOF
I0521 02:11:09.270240 1 reflector.go:359] Caches populated for *v1.Secret from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232
I0524 02:13:59.924798 1 reflector.go:359] Caches populated for *v1.Secret from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232
I0525 06:05:00.000243 1 dynamic_source.go:176] "cert-manager webhook certificate requires renewal, regenerating" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
I0525 06:05:00.005921 1 dynamic_source.go:290] "Updated cert-manager TLS certificate" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
I0526 10:47:08.827085 1 reflector.go:359] Caches populated for *v1.Secret from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232
I0529 22:05:00.000774 1 dynamic_source.go:176] "cert-manager webhook certificate requires renewal, regenerating" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
I0529 22:05:00.005274 1 dynamic_source.go:290] "Updated cert-manager TLS certificate" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
I0603 14:05:00.000388 1 dynamic_source.go:176] "cert-manager webhook certificate requires renewal, regenerating" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
I0603 14:05:00.005009 1 dynamic_source.go:290] "Updated cert-manager TLS certificate" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
I0605 22:00:58.599468 1 streamwatcher.go:111] Unexpected EOF during watch stream event decoding: unexpected EOF
I0608 06:05:00.000755 1 dynamic_source.go:176] "cert-manager webhook certificate requires renewal, regenerating" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
I0608 06:05:00.005040 1 dynamic_source.go:290] "Updated cert-manager TLS certificate" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
I0612 22:05:01.278110 1 dynamic_source.go:176] "cert-manager webhook certificate requires renewal, regenerating" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
I0612 22:05:01.282379 1 dynamic_source.go:290] "Updated cert-manager TLS certificate" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
I0617 14:05:01.001104 1 dynamic_source.go:176] "cert-manager webhook certificate requires renewal, regenerating" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
I0617 14:05:01.005377 1 dynamic_source.go:290] "Updated cert-manager TLS certificate" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
cert-manager-webhook
W0417 22:04:59.076588 1 client_config.go:659] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work.
I0417 22:04:59.079981 1 webhook.go:128] "using dynamic certificate generating using CA stored in Secret resource" logger="cert-manager.webhook.webhook" secret_namespace="cert-manager" secret_name="cert-manager-webhook-ca"
I0417 22:04:59.080569 1 server.go:152] "listening for insecure healthz connections" logger="cert-manager.webhook" address=6080
I0417 22:04:59.080704 1 server.go:183] "Registering webhook" logger="cert-manager.controller-runtime.webhook" path="/mutate"
I0417 22:04:59.080809 1 server.go:183] "Registering webhook" logger="cert-manager.controller-runtime.webhook" path="/validate"
I0417 22:04:59.080848 1 server.go:191] "Starting webhook server" logger="cert-manager.controller-runtime.webhook"
I0417 22:04:59.080895 1 server.go:242] "Serving webhook server" logger="cert-manager.controller-runtime.webhook" host="" port=10250
E0417 22:04:59.085081 1 dynamic_source.go:221] "Failed to generate serving certificate, retrying..." err="failed verifying CA keypair: tls: failed to find any PEM data in certificate input" logger="cert-manager" interval="1s"
I0417 22:04:59.110199 1 reflector.go:359] Caches populated for *v1.Secret from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232
I0417 22:05:00.099051 1 dynamic_source.go:290] "Updated cert-manager TLS certificate" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
I0417 22:05:00.099122 1 dynamic_source.go:172] "Detected root CA rotation - regenerating serving certificates" logger="cert-manager"
I0417 22:05:00.108752 1 dynamic_source.go:290] "Updated cert-manager TLS certificate" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
I0419 07:38:08.648996 1 reflector.go:359] Caches populated for *v1.Secret from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232
I0422 07:41:09.039645 1 reflector.go:359] Caches populated for *v1.Secret from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232
I0422 14:05:00.001403 1 dynamic_source.go:176] "cert-manager webhook certificate requires renewal, regenerating" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
I0422 14:05:00.009825 1 dynamic_source.go:290] "Updated cert-manager TLS certificate" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
I0427 06:05:00.000178 1 dynamic_source.go:176] "cert-manager webhook certificate requires renewal, regenerating" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
I0427 06:05:00.004817 1 dynamic_source.go:290] "Updated cert-manager TLS certificate" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
I0429 12:38:09.141286 1 reflector.go:359] Caches populated for *v1.Secret from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232
I0501 22:05:00.000299 1 dynamic_source.go:176] "cert-manager webhook certificate requires renewal, regenerating" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
I0501 22:05:00.005134 1 dynamic_source.go:290] "Updated cert-manager TLS certificate" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
I0506 14:05:00.000760 1 dynamic_source.go:176] "cert-manager webhook certificate requires renewal, regenerating" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
I0506 14:05:00.006399 1 dynamic_source.go:290] "Updated cert-manager TLS certificate" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
I0511 06:05:00.000297 1 dynamic_source.go:176] "cert-manager webhook certificate requires renewal, regenerating" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
I0511 06:05:00.005465 1 dynamic_source.go:290] "Updated cert-manager TLS certificate" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
I0515 22:05:00.421908 1 dynamic_source.go:176] "cert-manager webhook certificate requires renewal, regenerating" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
I0515 22:05:00.428541 1 dynamic_source.go:290] "Updated cert-manager TLS certificate" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
I0516 08:29:09.388418 1 reflector.go:359] Caches populated for *v1.Secret from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232
I0520 14:05:00.001249 1 dynamic_source.go:176] "cert-manager webhook certificate requires renewal, regenerating" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
I0520 14:05:00.005914 1 dynamic_source.go:290] "Updated cert-manager TLS certificate" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
I0520 22:53:10.552677 1 log.go:245] http: TLS handshake error from 10.244.1.28:50090: EOF
I0521 02:11:09.270240 1 reflector.go:359] Caches populated for *v1.Secret from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232
I0524 02:13:59.924798 1 reflector.go:359] Caches populated for *v1.Secret from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232
I0525 06:05:00.000243 1 dynamic_source.go:176] "cert-manager webhook certificate requires renewal, regenerating" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
I0525 06:05:00.005921 1 dynamic_source.go:290] "Updated cert-manager TLS certificate" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
I0526 10:47:08.827085 1 reflector.go:359] Caches populated for *v1.Secret from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232
I0529 22:05:00.000774 1 dynamic_source.go:176] "cert-manager webhook certificate requires renewal, regenerating" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
I0529 22:05:00.005274 1 dynamic_source.go:290] "Updated cert-manager TLS certificate" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
I0603 14:05:00.000388 1 dynamic_source.go:176] "cert-manager webhook certificate requires renewal, regenerating" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
I0603 14:05:00.005009 1 dynamic_source.go:290] "Updated cert-manager TLS certificate" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
I0605 22:00:58.599468 1 streamwatcher.go:111] Unexpected EOF during watch stream event decoding: unexpected EOF
I0608 06:05:00.000755 1 dynamic_source.go:176] "cert-manager webhook certificate requires renewal, regenerating" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
I0608 06:05:00.005040 1 dynamic_source.go:290] "Updated cert-manager TLS certificate" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
I0612 22:05:01.278110 1 dynamic_source.go:176] "cert-manager webhook certificate requires renewal, regenerating" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
I0612 22:05:01.282379 1 dynamic_source.go:290] "Updated cert-manager TLS certificate" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
I0617 14:05:01.001104 1 dynamic_source.go:176] "cert-manager webhook certificate requires renewal, regenerating" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
I0617 14:05:01.005377 1 dynamic_source.go:290] "Updated cert-manager TLS certificate" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
W0417 22:04:59.076588 1 client_config.go:659] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work.
I0417 22:04:59.079981 1 webhook.go:128] "using dynamic certificate generating using CA stored in Secret resource" logger="cert-manager.webhook.webhook" secret_namespace="cert-manager" secret_name="cert-manager-webhook-ca"
I0417 22:04:59.080569 1 server.go:152] "listening for insecure healthz connections" logger="cert-manager.webhook" address=6080
I0417 22:04:59.080704 1 server.go:183] "Registering webhook" logger="cert-manager.controller-runtime.webhook" path="/mutate"
I0417 22:04:59.080809 1 server.go:183] "Registering webhook" logger="cert-manager.controller-runtime.webhook" path="/validate"
I0417 22:04:59.080848 1 server.go:191] "Starting webhook server" logger="cert-manager.controller-runtime.webhook"
I0417 22:04:59.080895 1 server.go:242] "Serving webhook server" logger="cert-manager.controller-runtime.webhook" host="" port=10250
E0417 22:04:59.085081 1 dynamic_source.go:221] "Failed to generate serving certificate, retrying..." err="failed verifying CA keypair: tls: failed to find any PEM data in certificate input" logger="cert-manager" interval="1s"
I0417 22:04:59.110199 1 reflector.go:359] Caches populated for *v1.Secret from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232
I0417 22:05:00.099051 1 dynamic_source.go:290] "Updated cert-manager TLS certificate" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
I0417 22:05:00.099122 1 dynamic_source.go:172] "Detected root CA rotation - regenerating serving certificates" logger="cert-manager"
I0417 22:05:00.108752 1 dynamic_source.go:290] "Updated cert-manager TLS certificate" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
I0419 07:38:08.648996 1 reflector.go:359] Caches populated for *v1.Secret from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232
I0422 07:41:09.039645 1 reflector.go:359] Caches populated for *v1.Secret from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232
I0422 14:05:00.001403 1 dynamic_source.go:176] "cert-manager webhook certificate requires renewal, regenerating" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
I0422 14:05:00.009825 1 dynamic_source.go:290] "Updated cert-manager TLS certificate" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
I0427 06:05:00.000178 1 dynamic_source.go:176] "cert-manager webhook certificate requires renewal, regenerating" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
I0427 06:05:00.004817 1 dynamic_source.go:290] "Updated cert-manager TLS certificate" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
I0429 12:38:09.141286 1 reflector.go:359] Caches populated for *v1.Secret from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232
I0501 22:05:00.000299 1 dynamic_source.go:176] "cert-manager webhook certificate requires renewal, regenerating" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
I0501 22:05:00.005134 1 dynamic_source.go:290] "Updated cert-manager TLS certificate" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
I0506 14:05:00.000760 1 dynamic_source.go:176] "cert-manager webhook certificate requires renewal, regenerating" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
I0506 14:05:00.006399 1 dynamic_source.go:290] "Updated cert-manager TLS certificate" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
I0511 06:05:00.000297 1 dynamic_source.go:176] "cert-manager webhook certificate requires renewal, regenerating" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
I0511 06:05:00.005465 1 dynamic_source.go:290] "Updated cert-manager TLS certificate" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
I0515 22:05:00.421908 1 dynamic_source.go:176] "cert-manager webhook certificate requires renewal, regenerating" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
I0515 22:05:00.428541 1 dynamic_source.go:290] "Updated cert-manager TLS certificate" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
I0516 08:29:09.388418 1 reflector.go:359] Caches populated for *v1.Secret from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232
I0520 14:05:00.001249 1 dynamic_source.go:176] "cert-manager webhook certificate requires renewal, regenerating" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
I0520 14:05:00.005914 1 dynamic_source.go:290] "Updated cert-manager TLS certificate" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
I0520 22:53:10.552677 1 log.go:245] http: TLS handshake error from 10.244.1.28:50090: EOF
I0521 02:11:09.270240 1 reflector.go:359] Caches populated for *v1.Secret from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232
I0524 02:13:59.924798 1 reflector.go:359] Caches populated for *v1.Secret from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232
I0525 06:05:00.000243 1 dynamic_source.go:176] "cert-manager webhook certificate requires renewal, regenerating" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
I0525 06:05:00.005921 1 dynamic_source.go:290] "Updated cert-manager TLS certificate" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
I0526 10:47:08.827085 1 reflector.go:359] Caches populated for *v1.Secret from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232
I0529 22:05:00.000774 1 dynamic_source.go:176] "cert-manager webhook certificate requires renewal, regenerating" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
I0529 22:05:00.005274 1 dynamic_source.go:290] "Updated cert-manager TLS certificate" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
I0603 14:05:00.000388 1 dynamic_source.go:176] "cert-manager webhook certificate requires renewal, regenerating" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
I0603 14:05:00.005009 1 dynamic_source.go:290] "Updated cert-manager TLS certificate" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
I0605 22:00:58.599468 1 streamwatcher.go:111] Unexpected EOF during watch stream event decoding: unexpected EOF
I0608 06:05:00.000755 1 dynamic_source.go:176] "cert-manager webhook certificate requires renewal, regenerating" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
I0608 06:05:00.005040 1 dynamic_source.go:290] "Updated cert-manager TLS certificate" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
I0612 22:05:01.278110 1 dynamic_source.go:176] "cert-manager webhook certificate requires renewal, regenerating" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
I0612 22:05:01.282379 1 dynamic_source.go:290] "Updated cert-manager TLS certificate" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
I0617 14:05:01.001104 1 dynamic_source.go:176] "cert-manager webhook certificate requires renewal, regenerating" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
I0617 14:05:01.005377 1 dynamic_source.go:290] "Updated cert-manager TLS certificate" logger="cert-manager" DNSNames=["cert-manager-webhook","cert-manager-webhook.cert-manager","cert-manager-webhook.cert-manager.svc"]
Kubeintel ©2024