--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-05-21T16:39:35Z" generateName: system:openshift:openshift-monitoring- labels: metrics.openshift.io/csr.subject: prometheus managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: cluster-policy-controller operation: Update subresource: approval time: "2026-05-21T16:39:35Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} f:labels: .: {} f:metrics.openshift.io/csr.subject: {} manager: operator operation: Update time: "2026-05-21T16:39:35Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-05-21T16:39:42Z" name: system:openshift:openshift-monitoring-q9tmw resourceVersion: "8188" uid: f92a2f83-be0c-464c-87fe-1fa6ad77fa0c spec: extra: authentication.kubernetes.io/credential-id: - JTI=72fb91cf-bdb0-457f-af06-99fba21defcb authentication.kubernetes.io/node-name: - ip-10-0-134-225.ec2.internal authentication.kubernetes.io/node-uid: - 60376d34-c5a7-4bf4-8a65-d6dc1c5de250 authentication.kubernetes.io/pod-name: - cluster-monitoring-operator-6c75959455-dzvd9 authentication.kubernetes.io/pod-uid: - fc813317-177d-428d-9f88-0d0e596d8883 groups: - system:serviceaccounts - system:serviceaccounts:openshift-monitoring - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client uid: f6c3891b-741f-4ca9-a959-70f9d7deb3a7 usages: - digital signature - key encipherment - client auth username: system:serviceaccount:openshift-monitoring:cluster-monitoring-operator status: certificate: LS0tLS1CRUdJTiBDRVJUSUZJQ0FURS0tLS0tCk1JSUN0VENDQVoyZ0F3SUJBZ0lRZklaZHZJYXNoc1hYRDF3cTE5V2FrekFOQmdrcWhraUc5dzBCQVFzRkFEQXUKTVJJd0VBWURWUVFMRXdsdmNHVnVjMmhwWm5ReEdEQVdCZ05WQkFNVEQydDFZbVV0WTNOeUxYTnBaMjVsY2pBZQpGdzB5TmpBMU1qRXhOak0wTkRGYUZ3MHlPREExTWpBeE5qTTBOREZhTUVReFFqQkFCZ05WQkFNVE9YTjVjM1JsCmJUcHpaWEoyYVdObFlXTmpiM1Z1ZERwdmNHVnVjMmhwWm5RdGJXOXVhWFJ2Y21sdVp6cHdjbTl0WlhSb1pYVnoKTFdzNGN6QlpNQk1HQnlxR1NNNDlBZ0VHQ0NxR1NNNDlBd0VIQTBJQUJObll4aVp5TzBudEdCbkhyZlFyZy9hTQpneWlaZWdHZGFqamEzNHl1ZWtaREZOc2luUlZFeXV2VzJ1NDhVSWE5enVoL3BlTlJBUFBUNWdnT2hlMVJiQnFqCmdZTXdnWUF3RGdZRFZSMFBBUUgvQkFRREFnV2dNQk1HQTFVZEpRUU1NQW9HQ0NzR0FRVUZCd01DTUF3R0ExVWQKRXdFQi93UUNNQUF3U3dZRFZSMGpCRVF3UW9CQVI0M21kc3I2MlRjNzUwd1p4bUowVWRuT055TWg3bkE3WEE3VgpvZUFwUTVjVXRlVDVvUmc3and5dzVUZGFjQVVXSkVRRUllZUpjYWhuS3E3Wm9WdG5GekFOQmdrcWhraUc5dzBCCkFRc0ZBQU9DQVFFQUo4NGZ2TUtjenpwa3BrR2h1TkFNZlE3QnV1K2pLbnVSN3BmQmg5VW1YT1M0b0JZVXB3WG4KRENRMVFneG5hbWZKNWdmUll0a1Zxd0tidTIrWWg3clZEZng0amE4QUk3dUkzbmFjaHVKSGhOdE51UWFzN2o4SworZmJrNnhjYXhkcFhXbzNkUWVFZW1FNFZXU240Z2dXdVRtL3k4NmVsdUU1aGlwQlhjUkdMS2lDd21iTis0d2ZaCng0b2FudFNodUxqK0R4OTJpM0dwdkY2VTgwdXNiVjB4N2p1U1BzSUlYbS8vSkNqSjZMcUNML2wzNVVmL0c5cXkKSCtmem10RDFDRE9Sakcvb29BVnZabkhCdHJXMGtzeUdCK0FsNmdONDh5UlRKRENzd0dHeStWY1dSWkdvQTBzNAphN3NtenYxNm41NVhad1ZlR1gwWE93LzBOa0tyNGZnQkpRPT0KLS0tLS1FTkQgQ0VSVElGSUNBVEUtLS0tLQo= conditions: - lastTransitionTime: "2026-05-21T16:39:35Z" lastUpdateTime: "2026-05-21T16:39:35Z" message: Auto-approved CSR "system:openshift:openshift-monitoring-q9tmw" reason: AutoApproved status: "True" type: Approved