--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-05-29T17:58:53Z" generateName: system:openshift:openshift-monitoring- labels: metrics.openshift.io/csr.subject: metrics-server managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: cluster-policy-controller operation: Update subresource: approval time: "2026-05-29T17:58:53Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-05-29T17:58:53Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} f:labels: .: {} f:metrics.openshift.io/csr.subject: {} manager: operator operation: Update time: "2026-05-29T17:58:53Z" name: system:openshift:openshift-monitoring-brv8j resourceVersion: "8400" uid: 82060f90-f104-4cc8-831a-cf49362f670e spec: extra: authentication.kubernetes.io/credential-id: - JTI=c3ac7aea-c9b9-44e3-94d8-ae5211a94908 authentication.kubernetes.io/node-name: - ip-10-0-133-167.ec2.internal authentication.kubernetes.io/node-uid: - 62a315e0-8c9a-4f87-9a23-00d8b2eda1a4 authentication.kubernetes.io/pod-name: - cluster-monitoring-operator-69b6cbdb88-757x8 authentication.kubernetes.io/pod-uid: - 049a52c2-66f9-47e2-b13b-bb28cc65d9b3 groups: - system:serviceaccounts - system:serviceaccounts:openshift-monitoring - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client uid: d99d9fea-c959-4fd9-a0ed-bdea0e13d72a usages: - digital signature - key encipherment - client auth username: system:serviceaccount:openshift-monitoring:cluster-monitoring-operator status: certificate: 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 conditions: - lastTransitionTime: "2026-05-29T17:58:53Z" lastUpdateTime: "2026-05-29T17:58:53Z" message: Auto-approved CSR "system:openshift:openshift-monitoring-brv8j" reason: AutoApproved status: "True" type: Approved