--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-04-23T16:37:47Z" generateName: system:openshift:openshift-monitoring- labels: metrics.openshift.io/csr.subject: metrics-server managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: cluster-policy-controller operation: Update subresource: approval time: "2026-04-23T16:37:47Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-04-23T16:37:47Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} f:labels: .: {} f:metrics.openshift.io/csr.subject: {} manager: operator operation: Update time: "2026-04-23T16:37:47Z" name: system:openshift:openshift-monitoring-9prgz resourceVersion: "8315" uid: 2bc470c8-8450-4369-8c39-f8bde877d969 spec: extra: authentication.kubernetes.io/credential-id: - JTI=e400cb13-b4a8-4fe2-8be8-1a24bf7f7b75 authentication.kubernetes.io/node-name: - ip-10-0-129-102.ec2.internal authentication.kubernetes.io/node-uid: - c18813de-3fa7-4d36-9b55-04e88fe7d746 authentication.kubernetes.io/pod-name: - cluster-monitoring-operator-75587bd455-7nckc authentication.kubernetes.io/pod-uid: - 71af0be6-1f33-49c7-ba45-d12899bb84e6 groups: - system:serviceaccounts - system:serviceaccounts:openshift-monitoring - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client uid: 8a83f03c-cbf8-4e00-9c41-03aeb1a28486 usages: - digital signature - key encipherment - client auth username: system:serviceaccount:openshift-monitoring:cluster-monitoring-operator status: certificate: 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 conditions: - lastTransitionTime: "2026-04-23T16:37:47Z" lastUpdateTime: "2026-04-23T16:37:47Z" message: Auto-approved CSR "system:openshift:openshift-monitoring-9prgz" reason: AutoApproved status: "True" type: Approved