--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-04-22T18:49:30Z" generateName: system:openshift:openshift-monitoring- labels: metrics.openshift.io/csr.subject: prometheus managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} f:labels: .: {} f:metrics.openshift.io/csr.subject: {} manager: operator operation: Update time: "2026-04-22T18:49:30Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: cluster-policy-controller operation: Update subresource: approval time: "2026-04-22T18:49:31Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-04-22T18:49:31Z" name: system:openshift:openshift-monitoring-ff4d2 resourceVersion: "8222" uid: a864efa8-5faa-4b96-afa2-166106491dae spec: extra: authentication.kubernetes.io/credential-id: - JTI=adf8b4c9-3494-42c1-8522-ef3a9f08b49a authentication.kubernetes.io/node-name: - ip-10-0-133-163.ec2.internal authentication.kubernetes.io/node-uid: - 208b79d5-d232-43aa-b4fa-877dd32d838b authentication.kubernetes.io/pod-name: - cluster-monitoring-operator-75587bd455-qhml5 authentication.kubernetes.io/pod-uid: - 82e68df6-e973-4eb4-9f72-57676895ca9b groups: - system:serviceaccounts - system:serviceaccounts:openshift-monitoring - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client uid: 4dd0cd76-d6ee-49ac-ace2-b7273c539216 usages: - digital signature - key encipherment - client auth username: system:serviceaccount:openshift-monitoring:cluster-monitoring-operator status: certificate: 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 conditions: - lastTransitionTime: "2026-04-22T18:49:31Z" lastUpdateTime: "2026-04-22T18:49:31Z" message: Auto-approved CSR "system:openshift:openshift-monitoring-ff4d2" reason: AutoApproved status: "True" type: Approved