--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-04-24T23:54:50Z" generateName: system:openshift:openshift-monitoring- labels: metrics.openshift.io/csr.subject: prometheus managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: cluster-policy-controller operation: Update subresource: approval time: "2026-04-24T23:54:50Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-04-24T23:54:50Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} f:labels: .: {} f:metrics.openshift.io/csr.subject: {} manager: operator operation: Update time: "2026-04-24T23:54:50Z" name: system:openshift:openshift-monitoring-t87fw resourceVersion: "7737" uid: b5d9ff25-bf52-4617-96da-287975764815 spec: extra: authentication.kubernetes.io/credential-id: - JTI=38bc51a9-2ef0-4092-9208-aedd055cd5b2 authentication.kubernetes.io/node-name: - ip-10-0-129-4.ec2.internal authentication.kubernetes.io/node-uid: - ec81ad10-0ee2-420f-b66b-034a9f86de33 authentication.kubernetes.io/pod-name: - cluster-monitoring-operator-75587bd455-lfc8g authentication.kubernetes.io/pod-uid: - f3ec85ed-0f08-4e69-b8f5-19f031ceea01 groups: - system:serviceaccounts - system:serviceaccounts:openshift-monitoring - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client uid: 7aa771a4-6ddc-4faa-ab97-fd617479a0b1 usages: - digital signature - key encipherment - client auth username: system:serviceaccount:openshift-monitoring:cluster-monitoring-operator status: certificate: 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 conditions: - lastTransitionTime: "2026-04-24T23:54:50Z" lastUpdateTime: "2026-04-24T23:54:50Z" message: Auto-approved CSR "system:openshift:openshift-monitoring-t87fw" reason: AutoApproved status: "True" type: Approved