--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-06-03T16:36:23Z" generateName: system:openshift:openshift-monitoring- labels: metrics.openshift.io/csr.subject: metrics-server managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: cluster-policy-controller operation: Update subresource: approval time: "2026-06-03T16:36:23Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-06-03T16:36:23Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} f:labels: .: {} f:metrics.openshift.io/csr.subject: {} manager: operator operation: Update time: "2026-06-03T16:36:23Z" name: system:openshift:openshift-monitoring-8c9sk resourceVersion: "8462" uid: c2392c87-f5f7-470d-a52b-6e6081696aa1 spec: extra: authentication.kubernetes.io/credential-id: - JTI=6f3f1a6e-4d3f-457b-a567-43c42ec079b3 authentication.kubernetes.io/node-name: - ip-10-0-135-67.ec2.internal authentication.kubernetes.io/node-uid: - b33f8d6d-58ca-4e69-b01f-d9ecd24d4da6 authentication.kubernetes.io/pod-name: - cluster-monitoring-operator-69b6cbdb88-tzxs6 authentication.kubernetes.io/pod-uid: - 48e00082-b030-48ac-aa35-9cb1ab31fae8 groups: - system:serviceaccounts - system:serviceaccounts:openshift-monitoring - system:authenticated request: LS0tLS1CRUdJTiBDRVJUSUZJQ0FURSBSRVFVRVNULS0tLS0KTUlIK01JR21BZ0VBTUVReFFqQkFCZ05WQkFNVE9YTjVjM1JsYlRwelpYSjJhV05sWVdOamIzVnVkRHB2Y0dWdQpjMmhwWm5RdGJXOXVhWFJ2Y21sdVp6cHRaWFJ5YVdOekxYTmxjblpsY2pCWk1CTUdCeXFHU000OUFnRUdDQ3FHClNNNDlBd0VIQTBJQUJFdDFHWVJ0NFpVMXdyQ2VSVlhUYUpUb3RMclF6Mysrck51akNSTzlmQXUrLyt6cFVRbC8KNVgwRHlJOEY1Q1NZa09wSGs3QS9TOSsrTmdWS3h5NnZxSGFnQURBS0JnZ3Foa2pPUFFRREFnTkhBREJFQWlCWQprRlV6bFZhUHYvWlBEREhINFNXeXlOTjVXdzRWblhPaGoxNVlqTkpPRkFJZ2FSN0VpSS8xT3dveER5K1U0ZURKCmoxK1JFQURISDFNV3kxZUhrZXNlcEk4PQotLS0tLUVORCBDRVJUSUZJQ0FURSBSRVFVRVNULS0tLS0K signerName: kubernetes.io/kube-apiserver-client uid: f70a381a-d5da-4b7a-b97f-e50f58aaffdf usages: - digital signature - key encipherment - client auth username: system:serviceaccount:openshift-monitoring:cluster-monitoring-operator status: certificate: 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 conditions: - lastTransitionTime: "2026-06-03T16:36:23Z" lastUpdateTime: "2026-06-03T16:36:23Z" message: Auto-approved CSR "system:openshift:openshift-monitoring-8c9sk" reason: AutoApproved status: "True" type: Approved