--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-06-13T05:28:10Z" generateName: system:openshift:openshift-monitoring- labels: metrics.openshift.io/csr.subject: metrics-server managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: cluster-policy-controller operation: Update subresource: approval time: "2026-06-13T05:28:10Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} f:labels: .: {} f:metrics.openshift.io/csr.subject: {} manager: operator operation: Update time: "2026-06-13T05:28:10Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-06-13T05:28:17Z" name: system:openshift:openshift-monitoring-4pf2h resourceVersion: "9059" uid: bf873f69-9eef-4774-83a2-b1eb239c2c94 spec: extra: authentication.kubernetes.io/credential-id: - JTI=89d417e0-c8c5-420b-be3a-d48112355eb1 authentication.kubernetes.io/node-name: - ip-10-0-140-220.ec2.internal authentication.kubernetes.io/node-uid: - 09d77da7-2eac-4eb1-b971-61a785d3f5e6 authentication.kubernetes.io/pod-name: - cluster-monitoring-operator-f9d7df769-krddd authentication.kubernetes.io/pod-uid: - e5c07b20-d7b4-4d36-84b7-fab2a599300e groups: - system:serviceaccounts - system:serviceaccounts:openshift-monitoring - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client uid: 8d2ab767-d36a-494e-8220-08e23be4f577 usages: - digital signature - key encipherment - client auth username: system:serviceaccount:openshift-monitoring:cluster-monitoring-operator status: certificate: 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 conditions: - lastTransitionTime: "2026-06-13T05:28:10Z" lastUpdateTime: "2026-06-13T05:28:10Z" message: Auto-approved CSR "system:openshift:openshift-monitoring-4pf2h" reason: AutoApproved status: "True" type: Approved