--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-04-17T16:34:14Z" generateName: system:openshift:openshift-monitoring- labels: metrics.openshift.io/csr.subject: prometheus managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: cluster-policy-controller operation: Update subresource: approval time: "2026-04-17T16:34:14Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-04-17T16:34:14Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} f:labels: .: {} f:metrics.openshift.io/csr.subject: {} manager: operator operation: Update time: "2026-04-17T16:34:14Z" name: system:openshift:openshift-monitoring-4kpqm resourceVersion: "8595" uid: 92841f4e-7a64-4e10-86ae-e45abf48193d spec: extra: authentication.kubernetes.io/credential-id: - JTI=824231d6-acd8-419c-85fa-4ea85fbd09ab authentication.kubernetes.io/node-name: - ip-10-0-141-140.ec2.internal authentication.kubernetes.io/node-uid: - 5aedbd28-2fe0-4bd5-b903-38c7cb8cc6d8 authentication.kubernetes.io/pod-name: - cluster-monitoring-operator-75587bd455-mk5cl authentication.kubernetes.io/pod-uid: - dfe89383-3a58-4c17-847d-fe8456a068e8 groups: - system:serviceaccounts - system:serviceaccounts:openshift-monitoring - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client uid: ca7afc25-de09-486f-ae70-3ab0940cc976 usages: - digital signature - key encipherment - client auth username: system:serviceaccount:openshift-monitoring:cluster-monitoring-operator status: certificate: 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 conditions: - lastTransitionTime: "2026-04-17T16:34:14Z" lastUpdateTime: "2026-04-17T16:34:14Z" message: Auto-approved CSR "system:openshift:openshift-monitoring-4kpqm" reason: AutoApproved status: "True" type: Approved