--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-05-25T12:15:21Z" generateName: system:openshift:openshift-monitoring- labels: metrics.openshift.io/csr.subject: metrics-server managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: cluster-policy-controller operation: Update subresource: approval time: "2026-05-25T12:15:21Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-05-25T12:15:21Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} f:labels: .: {} f:metrics.openshift.io/csr.subject: {} manager: operator operation: Update time: "2026-05-25T12:15:21Z" name: system:openshift:openshift-monitoring-fw568 resourceVersion: "8254" uid: 187a30a0-cdec-45e2-bc59-d6b19bf0fdad spec: extra: authentication.kubernetes.io/credential-id: - JTI=9846cc3b-42f3-4852-8ca3-cb90443f6fe5 authentication.kubernetes.io/node-name: - ip-10-0-133-4.ec2.internal authentication.kubernetes.io/node-uid: - caa5b443-53e9-40d4-b56c-c5c3ff0f819b authentication.kubernetes.io/pod-name: - cluster-monitoring-operator-6c75959455-bnkc2 authentication.kubernetes.io/pod-uid: - c0c15556-618a-4ad2-9f3a-44ce817b0d48 groups: - system:serviceaccounts - system:serviceaccounts:openshift-monitoring - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client uid: 413c300a-3f59-40c3-bb47-9a6ddc045e0c usages: - digital signature - key encipherment - client auth username: system:serviceaccount:openshift-monitoring:cluster-monitoring-operator status: certificate: LS0tLS1CRUdJTiBDRVJUSUZJQ0FURS0tLS0tCk1JSUN0VENDQVoyZ0F3SUJBZ0lRTjZSYzRya2RaZUFNVlY3bU5LRUlmREFOQmdrcWhraUc5dzBCQVFzRkFEQXUKTVJJd0VBWURWUVFMRXdsdmNHVnVjMmhwWm5ReEdEQVdCZ05WQkFNVEQydDFZbVV0WTNOeUxYTnBaMjVsY2pBZQpGdzB5TmpBMU1qVXhNakV3TWpGYUZ3MHlPREExTWpReE1qRXdNakZhTUVReFFqQkFCZ05WQkFNVE9YTjVjM1JsCmJUcHpaWEoyYVdObFlXTmpiM1Z1ZERwdmNHVnVjMmhwWm5RdGJXOXVhWFJ2Y21sdVp6cHRaWFJ5YVdOekxYTmwKY25abGNqQlpNQk1HQnlxR1NNNDlBZ0VHQ0NxR1NNNDlBd0VIQTBJQUJMY3Q0R2FtWjR6RnozM3I2Z1JRSkxnMQp6NGJsaDFjY0FRN0tXVzJLUEJJL05iK0dsQ1p3UkhoOFQ1UkI0TnRRU0ZGRVdUYXBSMmtmSkQ1QW0zSlRuMzZqCmdZTXdnWUF3RGdZRFZSMFBBUUgvQkFRREFnV2dNQk1HQTFVZEpRUU1NQW9HQ0NzR0FRVUZCd01DTUF3R0ExVWQKRXdFQi93UUNNQUF3U3dZRFZSMGpCRVF3UW9CQXJOVkVuQm5XQTJnQzNDVUJjSkxvSzR0bXhzN0pJbWw1c1J2VgpodzZldnUxMXZ1MGh0ZElENHRYK2NwSlVOL0FRNXljTmtxc1o0YllhMzFCdnlrZGR0ekFOQmdrcWhraUc5dzBCCkFRc0ZBQU9DQVFFQUFYWEoxemxqbjJEL3k0ZmYveUFDYWFvalhUVExpZmtoWGhPSDFzTzdsL0h2V2Y1TXBNS1EKQXRSdTE2T29uSkFZS2FCQk44ZjhWOGJlM3dvOWQ4SWVYbGtnNnlFMmlBaGkxbjJyZDdiSzV4cTFrcWNCYk83Kwo1U0Vsd0JrM2RUbWJ2NmhyWVQ2Qm5xV3RKcmRLQ0RybUVuYU56UkIxTCtsWnZsUGNqSFFrbGpkNkdWalhXMmp6CkxnejNWeExQbWNvdFF6eVdIdG92d2l4WitNZkRnbFNlN21veXZYTXQrUkJPYVZaZkdWY05uRzNmUGxPUktWdTQKQWRDdTVoRGFvR2xTVlBmTStUUE85SGR4TlBDckVHQ2wrMlVnbG5YSTdpNmh3S1BLMmd0RGdJQWUvU3hVNjN3TQpVOXQzaXJIb044YllVanpKRTdBYUJ5ZHNkZkV5bzVMUFFRPT0KLS0tLS1FTkQgQ0VSVElGSUNBVEUtLS0tLQo= conditions: - lastTransitionTime: "2026-05-25T12:15:21Z" lastUpdateTime: "2026-05-25T12:15:21Z" message: Auto-approved CSR "system:openshift:openshift-monitoring-fw568" reason: AutoApproved status: "True" type: Approved