--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-04-16T16:05:52Z" generateName: system:openshift:openshift-monitoring- labels: metrics.openshift.io/csr.subject: metrics-server managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: cluster-policy-controller operation: Update subresource: approval time: "2026-04-16T16:05:52Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-04-16T16:05:52Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} f:labels: .: {} f:metrics.openshift.io/csr.subject: {} manager: operator operation: Update time: "2026-04-16T16:05:52Z" name: system:openshift:openshift-monitoring-r7cbv resourceVersion: "8421" uid: 3f3561b9-1b6e-4d03-809a-a8b27e3768a6 spec: extra: authentication.kubernetes.io/credential-id: - JTI=b1f6b3ae-9b8f-4c0d-818f-abd08fada1e5 authentication.kubernetes.io/node-name: - ip-10-0-129-182.ec2.internal authentication.kubernetes.io/node-uid: - 2ca19011-2b28-432f-9b06-4d5e720b4b56 authentication.kubernetes.io/pod-name: - cluster-monitoring-operator-6667474d89-c7z5l authentication.kubernetes.io/pod-uid: - 5a2e5aa5-e21e-48f0-b556-613a38c7c168 groups: - system:serviceaccounts - system:serviceaccounts:openshift-monitoring - system:authenticated request: LS0tLS1CRUdJTiBDRVJUSUZJQ0FURSBSRVFVRVNULS0tLS0KTUlIL01JR21BZ0VBTUVReFFqQkFCZ05WQkFNVE9YTjVjM1JsYlRwelpYSjJhV05sWVdOamIzVnVkRHB2Y0dWdQpjMmhwWm5RdGJXOXVhWFJ2Y21sdVp6cHRaWFJ5YVdOekxYTmxjblpsY2pCWk1CTUdCeXFHU000OUFnRUdDQ3FHClNNNDlBd0VIQTBJQUJKZVNFWGJySEJSdXNuNkVJeTB6dXY1dFhITGtnZUlYUzNMQ1RXbGZ2Z3RlaWJ5VUQvWlgKbjl5cU5rQ0M3SzV0N3BzK3pQakpPd3lBRTI3RGViR3oxTzZnQURBS0JnZ3Foa2pPUFFRREFnTklBREJGQWlFQQpvUnM0QXp6SXhmSkd6QzEvWGdMREhlOEp0Y0dwWG8raEJ4OEJqL1dGYmtNQ0lHNVlMSU1DZzY4bU5Md1BLNUk5Ci9TdVJsc1VvczVqSThXNDRvY1VaaWVGTAotLS0tLUVORCBDRVJUSUZJQ0FURSBSRVFVRVNULS0tLS0K signerName: kubernetes.io/kube-apiserver-client uid: 11b1d29a-429a-4c40-ae01-007f57e171f5 usages: - digital signature - key encipherment - client auth username: system:serviceaccount:openshift-monitoring:cluster-monitoring-operator status: certificate: LS0tLS1CRUdJTiBDRVJUSUZJQ0FURS0tLS0tCk1JSUN0VENDQVoyZ0F3SUJBZ0lRSmdoUCtqd1F3aE92Q1c4THQrSnNzVEFOQmdrcWhraUc5dzBCQVFzRkFEQXUKTVJJd0VBWURWUVFMRXdsdmNHVnVjMmhwWm5ReEdEQVdCZ05WQkFNVEQydDFZbVV0WTNOeUxYTnBaMjVsY2pBZQpGdzB5TmpBME1UWXhOakF3TlRKYUZ3MHlPREEwTVRVeE5qQXdOVEphTUVReFFqQkFCZ05WQkFNVE9YTjVjM1JsCmJUcHpaWEoyYVdObFlXTmpiM1Z1ZERwdmNHVnVjMmhwWm5RdGJXOXVhWFJ2Y21sdVp6cHRaWFJ5YVdOekxYTmwKY25abGNqQlpNQk1HQnlxR1NNNDlBZ0VHQ0NxR1NNNDlBd0VIQTBJQUJKZVNFWGJySEJSdXNuNkVJeTB6dXY1dApYSExrZ2VJWFMzTENUV2xmdmd0ZWlieVVEL1pYbjl5cU5rQ0M3SzV0N3BzK3pQakpPd3lBRTI3RGViR3oxTzZqCmdZTXdnWUF3RGdZRFZSMFBBUUgvQkFRREFnV2dNQk1HQTFVZEpRUU1NQW9HQ0NzR0FRVUZCd01DTUF3R0ExVWQKRXdFQi93UUNNQUF3U3dZRFZSMGpCRVF3UW9CQS9jVktVZlRIRkRSYW1kWEFOM2lOUzJCbnU1MWJ3bWNPMDB1cwpIU2VJbjRkR3g4RCsyTzFITVZoVHJoZ016M1VFR2VrTXRzUlpHaTRTWjc1ZG9RWVd2VEFOQmdrcWhraUc5dzBCCkFRc0ZBQU9DQVFFQWQzUHUvK3BtZ0ZVQURWZmhnbERuVlMyNk9GV2RmZkVrMjRhZzZTa2doZmtmMExTaEp0MWgKZUwwUlEzOE9qTmJ6OE5LWlJTUzByektUb2VaSjNoNFlwMkVwM1ZwL1FxK1FDRWRFWjJUOTI3VnJINjQvZ2JUNApObmZkWllGczdtQWd2cXE2NHNPOVo0YlRzcVNMMVE5Q0VQWjFzbElxZXRjSHRXYm9NdEE1VnUxZ2VHQXJpTnRsCnlZdU96QjkvMFVmRXZZZVUxTE1UYlIxYklYS1VOOUU4Tk1hcG1aR0tuRnZSUWFyVzNjZWFITDNoOXQ1T0lVSW8KRGJ0a0diVnAxQTBEMUc4VVRKd28yV0MrRVFYOXhkNUpRN2lCMmdCVFpEY2lJL0pMMlM3STNTNWNHV205dml0ego2OTlxWDZ6ckRWK2lVbGhkS2Q3Y0tZdGxLSEJreEI5RTN3PT0KLS0tLS1FTkQgQ0VSVElGSUNBVEUtLS0tLQo= conditions: - lastTransitionTime: "2026-04-16T16:05:52Z" lastUpdateTime: "2026-04-16T16:05:52Z" message: Auto-approved CSR "system:openshift:openshift-monitoring-r7cbv" reason: AutoApproved status: "True" type: Approved