--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-06-11T18:37:14Z" generateName: system:openshift:openshift-monitoring- labels: metrics.openshift.io/csr.subject: metrics-server managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: cluster-policy-controller operation: Update subresource: approval time: "2026-06-11T18:37:14Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} f:labels: .: {} f:metrics.openshift.io/csr.subject: {} manager: operator operation: Update time: "2026-06-11T18:37:14Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-06-11T18:37:28Z" name: system:openshift:openshift-monitoring-hdwfz resourceVersion: "8494" uid: 1c01c469-e703-4374-b81d-4e424ed38a42 spec: extra: authentication.kubernetes.io/credential-id: - JTI=4af6c16e-6688-4924-b5af-fffd41bc6dbe authentication.kubernetes.io/node-name: - ip-10-0-138-156.ec2.internal authentication.kubernetes.io/node-uid: - 4bb49b50-0ad3-4acc-bfca-c945711c73a0 authentication.kubernetes.io/pod-name: - cluster-monitoring-operator-f9d7df769-85bbt authentication.kubernetes.io/pod-uid: - 08e48b3b-9d88-4715-aa6a-008e8cdebb3e groups: - system:serviceaccounts - system:serviceaccounts:openshift-monitoring - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client uid: c5f56c29-1f06-40f6-bca9-4fb3e65c4f2f usages: - digital signature - key encipherment - client auth username: system:serviceaccount:openshift-monitoring:cluster-monitoring-operator status: certificate: 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 conditions: - lastTransitionTime: "2026-06-11T18:37:14Z" lastUpdateTime: "2026-06-11T18:37:14Z" message: Auto-approved CSR "system:openshift:openshift-monitoring-hdwfz" reason: AutoApproved status: "True" type: Approved