--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-04-24T22:31:04Z" generateName: system:openshift:openshift-monitoring- labels: metrics.openshift.io/csr.subject: metrics-server managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: cluster-policy-controller operation: Update subresource: approval time: "2026-04-24T22:31:04Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-04-24T22:31:04Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} f:labels: .: {} f:metrics.openshift.io/csr.subject: {} manager: operator operation: Update time: "2026-04-24T22:31:04Z" name: system:openshift:openshift-monitoring-nckz7 resourceVersion: "8569" uid: 054018b1-585e-4a7a-92c0-555d9caaf5d6 spec: extra: authentication.kubernetes.io/credential-id: - JTI=176fa5de-620c-4550-b2b5-0ed645380c5b authentication.kubernetes.io/node-name: - ip-10-0-133-73.ec2.internal authentication.kubernetes.io/node-uid: - 2e9ef42c-6c7b-4eb3-b554-ce31280e3b20 authentication.kubernetes.io/pod-name: - cluster-monitoring-operator-75587bd455-59n7s authentication.kubernetes.io/pod-uid: - ba1f6487-5042-4d0a-8bb2-4f385d224529 groups: - system:serviceaccounts - system:serviceaccounts:openshift-monitoring - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client uid: 4b929133-b12f-4d1d-a56e-f1581091c7b8 usages: - digital signature - key encipherment - client auth username: system:serviceaccount:openshift-monitoring:cluster-monitoring-operator status: certificate: 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 conditions: - lastTransitionTime: "2026-04-24T22:31:04Z" lastUpdateTime: "2026-04-24T22:31:04Z" message: Auto-approved CSR "system:openshift:openshift-monitoring-nckz7" reason: AutoApproved status: "True" type: Approved