--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-04-23T16:35:18Z" generateName: system:openshift:openshift-monitoring- labels: metrics.openshift.io/csr.subject: prometheus managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: cluster-policy-controller operation: Update subresource: approval time: "2026-04-23T16:35:18Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} f:labels: .: {} f:metrics.openshift.io/csr.subject: {} manager: operator operation: Update time: "2026-04-23T16:35:18Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-04-23T16:35:22Z" name: system:openshift:openshift-monitoring-rhmtb resourceVersion: "7403" uid: 2bd3b4c2-3b58-448e-8290-37beb819dbb3 spec: extra: authentication.kubernetes.io/credential-id: - JTI=9a371219-f1b4-4441-9100-6e8ab942681d authentication.kubernetes.io/node-name: - ip-10-0-133-231.ec2.internal authentication.kubernetes.io/node-uid: - 12c68359-73a7-48cd-af9a-e25b58c4f6f9 authentication.kubernetes.io/pod-name: - cluster-monitoring-operator-75587bd455-d4nsk authentication.kubernetes.io/pod-uid: - 6e3b3b5e-7dd7-421c-9733-f304050ddbce groups: - system:serviceaccounts - system:serviceaccounts:openshift-monitoring - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client uid: 3356be85-abdd-4db3-bb0c-6e67013ec862 usages: - digital signature - key encipherment - client auth username: system:serviceaccount:openshift-monitoring:cluster-monitoring-operator status: certificate: LS0tLS1CRUdJTiBDRVJUSUZJQ0FURS0tLS0tCk1JSUN0VENDQVoyZ0F3SUJBZ0lRT0lETDVCa25lSm9aTld3c2pqRmIxVEFOQmdrcWhraUc5dzBCQVFzRkFEQXUKTVJJd0VBWURWUVFMRXdsdmNHVnVjMmhwWm5ReEdEQVdCZ05WQkFNVEQydDFZbVV0WTNOeUxYTnBaMjVsY2pBZQpGdzB5TmpBME1qTXhOak13TWpKYUZ3MHlPREEwTWpJeE5qTXdNakphTUVReFFqQkFCZ05WQkFNVE9YTjVjM1JsCmJUcHpaWEoyYVdObFlXTmpiM1Z1ZERwdmNHVnVjMmhwWm5RdGJXOXVhWFJ2Y21sdVp6cHdjbTl0WlhSb1pYVnoKTFdzNGN6QlpNQk1HQnlxR1NNNDlBZ0VHQ0NxR1NNNDlBd0VIQTBJQUJOM1JmUWtMblRKUXZzTmU0ZzZoUklDawpIUG95enBheS9BN3lVN040RWdEdjkxMmh5SHVMMXFmOFNJc09yN2FLTFVyZ0V2Wm1xQXNHeDJYeUlPRjE3UlNqCmdZTXdnWUF3RGdZRFZSMFBBUUgvQkFRREFnV2dNQk1HQTFVZEpRUU1NQW9HQ0NzR0FRVUZCd01DTUF3R0ExVWQKRXdFQi93UUNNQUF3U3dZRFZSMGpCRVF3UW9CQXpkTGQrTS9TME83VGF5T2xSQllZT3FoL0tETjNhcUZCektkLwpCcUxVYnl6b2hYVXVyRmdPdENCc24rckRkdXh4SDNTU2NoNmFlSHQ4aGl6SXJXMnYyREFOQmdrcWhraUc5dzBCCkFRc0ZBQU9DQVFFQXc5bWljeDhsclc3YnZoWWNjMi82TTVYOW81NmNBSmRYcDRHOEVJb2RQV0phc3ljblNidTYKY2JSbCtjTStjbmFTSWltU1FBY2dBenhBTEtKWjJ1ZEhKMnM4bFpBNWxBNy9lM2d1RHZ3a2E4THlIb3I3cnhMaQpjYUFqOTh0Q0E4YlJJL1pKTXJZdENDaDVpbjVWOEJlMG84VVNOK1czS015NXpaQXlIRkQ4NFUxREJNUTJ1dzVzCkYreGtHMERHd0dnMUZJc2I1Q3VETHNoMjRya1RXLy8yYWcyWHRQcE1mM1lBYXhtNFFmZGovZnhFOC90TWJ2VDgKSTNPeis2ZnhZYjhIZWlPV0wxTnpOcXpSWlE0TGFtenoyVmVVVEZoSW16T1NXRm5ZamlWVHhKSy9uRnVlYmZoZwpBTlF2b1VVTDJtbWU0dnFqb3hSNEdDa1I1RlFpRHVkclJBPT0KLS0tLS1FTkQgQ0VSVElGSUNBVEUtLS0tLQo= conditions: - lastTransitionTime: "2026-04-23T16:35:18Z" lastUpdateTime: "2026-04-23T16:35:18Z" message: Auto-approved CSR "system:openshift:openshift-monitoring-rhmtb" reason: AutoApproved status: "True" type: Approved