Certificate.status
Status of the Certificate. This is set and managed automatically.
| Field / Type | Description |
|---|---|
List of status conditions to indicate the status of certificates. Known condition types are `Ready` and `Issuing`. | |
lastFailureTime | LastFailureTime is the time as recorded by the Certificate controller of the most recent failure to complete a CertificateRequest for this Certificate resource. If set, cert-manager will not re-request another Certificate until 1 hour has elapsed from this time.
|
nextPrivateKeySecretName | The name of the Secret resource containing the private key to be used for the next certificate iteration. The keymanager controller will automatically set this field if the `Issuing` condition is set to `True`. It will automatically unset this field when the Issuing condition is not set or False. |
notAfter | The expiration time of the certificate stored in the secret named by this resource in `spec.secretName`.
|
notBefore | The time after which the certificate stored in the secret named by this resource in spec.secretName is valid.
|
renewalTime | RenewalTime is the time at which the certificate will be next renewed. If not set, no upcoming renewal is scheduled.
|
revision | The current 'revision' of the certificate as issued. When a CertificateRequest resource is created, it will have the `cert-manager.io/certificate-revision` set to one greater than the current value of this field. Upon issuance, this field will be set to the value of the annotation on the CertificateRequest resource used to issue the certificate. Persisting the value on the CertificateRequest resource allows the certificates controller to know whether a request is part of an old issuance or if it is part of the ongoing revision's issuance by checking if the revision value in the annotation is greater than this field. |