--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-06-12T18:42:51Z" generateName: system:openshift:openshift-monitoring- labels: metrics.openshift.io/csr.subject: metrics-server managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: cluster-policy-controller operation: Update subresource: approval time: "2026-06-12T18:42:51Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-06-12T18:42:51Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} f:labels: .: {} f:metrics.openshift.io/csr.subject: {} manager: operator operation: Update time: "2026-06-12T18:42:51Z" name: system:openshift:openshift-monitoring-xdsvs resourceVersion: "9667" uid: a0500efd-5a2f-4601-9e62-cda528ed317d spec: extra: authentication.kubernetes.io/credential-id: - JTI=7307c471-dedb-43a8-89c9-61e5b48f488b authentication.kubernetes.io/node-name: - ip-10-0-141-141.ec2.internal authentication.kubernetes.io/node-uid: - 0a6debd6-6f45-4836-ad09-15cfa1ea59a6 authentication.kubernetes.io/pod-name: - cluster-monitoring-operator-f9d7df769-d4vg4 authentication.kubernetes.io/pod-uid: - aff6bbf7-a1a9-42b3-aa6f-36331e58d629 groups: - system:serviceaccounts - system:serviceaccounts:openshift-monitoring - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client uid: c9e28329-ee72-441b-8df8-2b218c1a78df usages: - digital signature - key encipherment - client auth username: system:serviceaccount:openshift-monitoring:cluster-monitoring-operator status: certificate: LS0tLS1CRUdJTiBDRVJUSUZJQ0FURS0tLS0tCk1JSUN0VENDQVoyZ0F3SUJBZ0lRSFd4b2VlQXFLenhoZUVXa0VUWGdlekFOQmdrcWhraUc5dzBCQVFzRkFEQXUKTVJJd0VBWURWUVFMRXdsdmNHVnVjMmhwWm5ReEdEQVdCZ05WQkFNVEQydDFZbVV0WTNOeUxYTnBaMjVsY2pBZQpGdzB5TmpBMk1USXhPRE0zTlRGYUZ3MHlPREEyTVRFeE9ETTNOVEZhTUVReFFqQkFCZ05WQkFNVE9YTjVjM1JsCmJUcHpaWEoyYVdObFlXTmpiM1Z1ZERwdmNHVnVjMmhwWm5RdGJXOXVhWFJ2Y21sdVp6cHRaWFJ5YVdOekxYTmwKY25abGNqQlpNQk1HQnlxR1NNNDlBZ0VHQ0NxR1NNNDlBd0VIQTBJQUJEQVd4MFcwMmMvVUNaRzZIb1o2K2l4bwptbVZZbjZybVF6MXU1cE9jVS9IMlBDZ0JCa2V1UjFXTDhvWTZVc1lJS3JSSXB2TFBTZnY2Ylp0aElKOW9OcjZqCmdZTXdnWUF3RGdZRFZSMFBBUUgvQkFRREFnV2dNQk1HQTFVZEpRUU1NQW9HQ0NzR0FRVUZCd01DTUF3R0ExVWQKRXdFQi93UUNNQUF3U3dZRFZSMGpCRVF3UW9CQW13V1VFL3loUEd5MXBKUmpVbFBNZVZqZkJiMlFTaUNCbUFwcQpvdSsrM05RN1RYREZqZkltTVg3OENVKyswa2NKUkREVEcxQXBrS1JmUW9vNjVzVS9UekFOQmdrcWhraUc5dzBCCkFRc0ZBQU9DQVFFQW1RMk96VjRvcWdCQW5wQmFiaTBUOHJjaEh3cjJ0Q3MzVjdlajd1NUJyb1RoU3Z6U0hiZEgKaWlKTXJldDJOemhSMVNjZmtJM1ZJQ2lMMVhoK2JXMmJPZXdYUEhpSHI2b3BrK2ZGZ2lxZjYyb1JCd0RmdmhNZgoweFV2YW1PY1k1MmpmYlBEREhnb2JnMDdiQzByWHIvRnVma1FHWU9rMnQxMWt2YVV4d0lKMTBwVUdWSW5xdnBwCmR3UGZJTmIwVy9Ic21Kd1d6VE1CWVd4dTcvd0c4RkljQTNmNjVZUEpYWkdlcSs5T0R5ektDaERHa1RXUDN6QjUKRFQyN05RTnB2Zi9kKy9uUnYwQ0lNdDdFOTNEcnJzUG5jeWlaaXlXSWhOa083VG9pc0ppQXdlbGsrNjdhek14NQp6NVZ5cG5OSVdHNS9UMEY1eVMrK2gyTE5GVlcyazdZUUJRPT0KLS0tLS1FTkQgQ0VSVElGSUNBVEUtLS0tLQo= conditions: - lastTransitionTime: "2026-06-12T18:42:51Z" lastUpdateTime: "2026-06-12T18:42:51Z" message: Auto-approved CSR "system:openshift:openshift-monitoring-xdsvs" reason: AutoApproved status: "True" type: Approved