--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-06-06T20:49:53Z" generateName: system:openshift:openshift-monitoring- labels: metrics.openshift.io/csr.subject: metrics-server managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: cluster-policy-controller operation: Update subresource: approval time: "2026-06-06T20:49:53Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} f:labels: .: {} f:metrics.openshift.io/csr.subject: {} manager: operator operation: Update time: "2026-06-06T20:49:53Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-06-06T20:50:02Z" name: system:openshift:openshift-monitoring-ntvbm resourceVersion: "9031" uid: e84a1d4e-4a83-4322-86bd-1b6927619769 spec: extra: authentication.kubernetes.io/credential-id: - JTI=e454c1a0-3932-41b5-8b54-8d8c32df4126 authentication.kubernetes.io/node-name: - ip-10-0-129-66.ec2.internal authentication.kubernetes.io/node-uid: - 3e783387-a3ca-4ae3-bbb6-7d9e1803fe12 authentication.kubernetes.io/pod-name: - cluster-monitoring-operator-74bbf69bbb-4xb76 authentication.kubernetes.io/pod-uid: - 39469d4f-a471-4585-aa7c-50da5c07e536 groups: - system:serviceaccounts - system:serviceaccounts:openshift-monitoring - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client uid: 60fd3216-c21f-4662-9965-98df443c649d usages: - digital signature - key encipherment - client auth username: system:serviceaccount:openshift-monitoring:cluster-monitoring-operator status: certificate: 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 conditions: - lastTransitionTime: "2026-06-06T20:49:53Z" lastUpdateTime: "2026-06-06T20:49:53Z" message: Auto-approved CSR "system:openshift:openshift-monitoring-ntvbm" reason: AutoApproved status: "True" type: Approved