--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-06-04T23:54:33Z" generateName: system:openshift:openshift-monitoring- labels: metrics.openshift.io/csr.subject: metrics-server managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: cluster-policy-controller operation: Update subresource: approval time: "2026-06-04T23:54:33Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} f:labels: .: {} f:metrics.openshift.io/csr.subject: {} manager: operator operation: Update time: "2026-06-04T23:54:33Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-06-04T23:54:43Z" name: system:openshift:openshift-monitoring-mtq8d resourceVersion: "9124" uid: cf7c47b5-f536-4ba8-bfff-43df46112a2f spec: extra: authentication.kubernetes.io/credential-id: - JTI=1d71e71a-5963-4ccc-8889-851ef40ca300 authentication.kubernetes.io/node-name: - ip-10-0-129-155.ec2.internal authentication.kubernetes.io/node-uid: - 865f0dae-9e00-4047-b504-dd8fedc6fbda authentication.kubernetes.io/pod-name: - cluster-monitoring-operator-74bbf69bbb-25qff authentication.kubernetes.io/pod-uid: - bc4534f5-9e55-459c-9b62-fdb7aa479982 groups: - system:serviceaccounts - system:serviceaccounts:openshift-monitoring - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client uid: f7ff95e9-8b59-4666-b73d-7bd71eae14c1 usages: - digital signature - key encipherment - client auth username: system:serviceaccount:openshift-monitoring:cluster-monitoring-operator status: certificate: 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 conditions: - lastTransitionTime: "2026-06-04T23:54:33Z" lastUpdateTime: "2026-06-04T23:54:33Z" message: Auto-approved CSR "system:openshift:openshift-monitoring-mtq8d" reason: AutoApproved status: "True" type: Approved