--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-04-24T19:07:46Z" generateName: system:openshift:openshift-monitoring- labels: metrics.openshift.io/csr.subject: prometheus managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: cluster-policy-controller operation: Update subresource: approval time: "2026-04-24T19:07:46Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} f:labels: .: {} f:metrics.openshift.io/csr.subject: {} manager: operator operation: Update time: "2026-04-24T19:07:46Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-04-24T19:07:47Z" name: system:openshift:openshift-monitoring-5bq67 resourceVersion: "7593" uid: 831d4700-4e92-49ce-8c2d-92fc2febf691 spec: extra: authentication.kubernetes.io/credential-id: - JTI=8fac8f2b-8360-4828-ae9d-5ee67019a9b1 authentication.kubernetes.io/node-name: - ip-10-0-138-52.ec2.internal authentication.kubernetes.io/node-uid: - 09a8146b-32de-41ea-951c-294d9e856813 authentication.kubernetes.io/pod-name: - cluster-monitoring-operator-75587bd455-9lv7p authentication.kubernetes.io/pod-uid: - 7503386e-4776-4896-bd44-4ef455ac6b98 groups: - system:serviceaccounts - system:serviceaccounts:openshift-monitoring - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client uid: b2ddc75b-34c9-4c78-b6f5-4f60fc30e06f usages: - digital signature - key encipherment - client auth username: system:serviceaccount:openshift-monitoring:cluster-monitoring-operator status: certificate: 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 conditions: - lastTransitionTime: "2026-04-24T19:07:46Z" lastUpdateTime: "2026-04-24T19:07:46Z" message: Auto-approved CSR "system:openshift:openshift-monitoring-5bq67" reason: AutoApproved status: "True" type: Approved