--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-06-05T15:12:01Z" generateName: system:openshift:openshift-monitoring- labels: metrics.openshift.io/csr.subject: metrics-server managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: cluster-policy-controller operation: Update subresource: approval time: "2026-06-05T15:12:01Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} f:labels: .: {} f:metrics.openshift.io/csr.subject: {} manager: operator operation: Update time: "2026-06-05T15:12:01Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-06-05T15:12:02Z" name: system:openshift:openshift-monitoring-pftds resourceVersion: "9337" uid: f814cc4e-90cd-43fc-b982-bdd9f29318c4 spec: extra: authentication.kubernetes.io/credential-id: - JTI=be887a0c-2e98-451e-bfe5-bb9b3ec5a234 authentication.kubernetes.io/node-name: - ip-10-0-131-172.ec2.internal authentication.kubernetes.io/node-uid: - 495baf98-f30d-48b9-b65a-a01f27de7fbf authentication.kubernetes.io/pod-name: - cluster-monitoring-operator-74bbf69bbb-k7mqx authentication.kubernetes.io/pod-uid: - 756f1ac0-70c8-408d-a13b-99b415c91791 groups: - system:serviceaccounts - system:serviceaccounts:openshift-monitoring - system:authenticated request: LS0tLS1CRUdJTiBDRVJUSUZJQ0FURSBSRVFVRVNULS0tLS0KTUlJQkFEQ0JwZ0lCQURCRU1VSXdRQVlEVlFRREV6bHplWE4wWlcwNmMyVnlkbWxqWldGalkyOTFiblE2YjNCbApibk5vYVdaMExXMXZibWwwYjNKcGJtYzZiV1YwY21samN5MXpaWEoyWlhJd1dUQVRCZ2NxaGtqT1BRSUJCZ2dxCmhrak9QUU1CQndOQ0FBVGkxdHNibjlhem1WYklnWlZ0L3ZqbTJaa3BKSTdLRnhQbnhaK2l2Y1dEc1IvN0dmZjgKU0YyaFVlL3RpcjcyT1NCdFBWV2ZxNHI5dkhvVW1wS29VRlFOb0FBd0NnWUlLb1pJemowRUF3SURTUUF3UmdJaApBTXFGSDFvZ2pTMkVNZTEvcHltbE4zdG9tTUdBMW9HNDlCd1M1cGIxbmx0SUFpRUFrOEFHdTUybWhncFczeEloCldnSWU1bFl3SHNJUW9rUEQ5RTh3SFRaY2VqMD0KLS0tLS1FTkQgQ0VSVElGSUNBVEUgUkVRVUVTVC0tLS0tCg== signerName: kubernetes.io/kube-apiserver-client uid: f6860e34-24ad-4713-9ea1-c60f532f571f usages: - digital signature - key encipherment - client auth username: system:serviceaccount:openshift-monitoring:cluster-monitoring-operator status: certificate: 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 conditions: - lastTransitionTime: "2026-06-05T15:12:01Z" lastUpdateTime: "2026-06-05T15:12:01Z" message: Auto-approved CSR "system:openshift:openshift-monitoring-pftds" reason: AutoApproved status: "True" type: Approved