--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-05-21T16:34:47Z" generateName: system:openshift:openshift-monitoring- labels: metrics.openshift.io/csr.subject: metrics-server managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: cluster-policy-controller operation: Update subresource: approval time: "2026-05-21T16:34:47Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-05-21T16:34:47Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} f:labels: .: {} f:metrics.openshift.io/csr.subject: {} manager: operator operation: Update time: "2026-05-21T16:34:47Z" name: system:openshift:openshift-monitoring-vflpj resourceVersion: "8519" uid: e809b3b3-6b13-404f-99ad-68ab29abaa41 spec: extra: authentication.kubernetes.io/credential-id: - JTI=2a886ff6-3551-4add-a1d6-9f3a7566f14e authentication.kubernetes.io/node-name: - ip-10-0-136-21.ec2.internal authentication.kubernetes.io/node-uid: - 4c079b8f-d809-4fa7-bd8f-7fcbf8c53248 authentication.kubernetes.io/pod-name: - cluster-monitoring-operator-6c75959455-hswx2 authentication.kubernetes.io/pod-uid: - 39cbf8cb-d27b-4e6c-8abc-603723d275fc groups: - system:serviceaccounts - system:serviceaccounts:openshift-monitoring - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client uid: b1c0ee6a-8869-4691-941f-9ad3aefb5204 usages: - digital signature - key encipherment - client auth username: system:serviceaccount:openshift-monitoring:cluster-monitoring-operator status: certificate: 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 conditions: - lastTransitionTime: "2026-05-21T16:34:47Z" lastUpdateTime: "2026-05-21T16:34:47Z" message: Auto-approved CSR "system:openshift:openshift-monitoring-vflpj" reason: AutoApproved status: "True" type: Approved