--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-04-23T16:35:18Z" generateName: system:openshift:openshift-monitoring- labels: metrics.openshift.io/csr.subject: metrics-server managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: cluster-policy-controller operation: Update subresource: approval time: "2026-04-23T16:35:18Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} f:labels: .: {} f:metrics.openshift.io/csr.subject: {} manager: operator operation: Update time: "2026-04-23T16:35:18Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-04-23T16:35:22Z" name: system:openshift:openshift-monitoring-r2t2d resourceVersion: "7402" uid: 52e1c07b-cec5-48f3-bd41-6af6eebb3ae4 spec: extra: authentication.kubernetes.io/credential-id: - JTI=9a371219-f1b4-4441-9100-6e8ab942681d authentication.kubernetes.io/node-name: - ip-10-0-133-231.ec2.internal authentication.kubernetes.io/node-uid: - 12c68359-73a7-48cd-af9a-e25b58c4f6f9 authentication.kubernetes.io/pod-name: - cluster-monitoring-operator-75587bd455-d4nsk authentication.kubernetes.io/pod-uid: - 6e3b3b5e-7dd7-421c-9733-f304050ddbce groups: - system:serviceaccounts - system:serviceaccounts:openshift-monitoring - system:authenticated request: LS0tLS1CRUdJTiBDRVJUSUZJQ0FURSBSRVFVRVNULS0tLS0KTUlIL01JR21BZ0VBTUVReFFqQkFCZ05WQkFNVE9YTjVjM1JsYlRwelpYSjJhV05sWVdOamIzVnVkRHB2Y0dWdQpjMmhwWm5RdGJXOXVhWFJ2Y21sdVp6cHRaWFJ5YVdOekxYTmxjblpsY2pCWk1CTUdCeXFHU000OUFnRUdDQ3FHClNNNDlBd0VIQTBJQUJFRlJwOGRVR2U2RE04cnc2VVNGcHphNEtOR0JyQUFOWmgxelBLTk44UUo4WldrdXd2MmcKbFRNZUdRRDVOSUw3TTJVUmJHS0lZekJ1RDBYWEF2RGpnWE9nQURBS0JnZ3Foa2pPUFFRREFnTklBREJGQWlBTwo3K0xNTHV3Sk9uSG1tSWJSbnBLK1pXSUJyRDBFdDQvUkdEeWFtazlmZ3dJaEFQSkdGWnJBOUdSMjBMNm1aQ2ZyCnVTL05LU09ad2R0cG1TRzJ4cXRyaXJzaAotLS0tLUVORCBDRVJUSUZJQ0FURSBSRVFVRVNULS0tLS0K signerName: kubernetes.io/kube-apiserver-client uid: 3356be85-abdd-4db3-bb0c-6e67013ec862 usages: - digital signature - key encipherment - client auth username: system:serviceaccount:openshift-monitoring:cluster-monitoring-operator status: certificate: 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 conditions: - lastTransitionTime: "2026-04-23T16:35:18Z" lastUpdateTime: "2026-04-23T16:35:18Z" message: Auto-approved CSR "system:openshift:openshift-monitoring-r2t2d" reason: AutoApproved status: "True" type: Approved