--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-06-10T20:04:03Z" generateName: system:openshift:openshift-monitoring- labels: metrics.openshift.io/csr.subject: metrics-server managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: cluster-policy-controller operation: Update subresource: approval time: "2026-06-10T20:04:03Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-06-10T20:04:03Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} f:labels: .: {} f:metrics.openshift.io/csr.subject: {} manager: operator operation: Update time: "2026-06-10T20:04:03Z" name: system:openshift:openshift-monitoring-5q772 resourceVersion: "9591" uid: 23fb687c-bbf5-456b-bc78-e26c6de8026e spec: extra: authentication.kubernetes.io/credential-id: - JTI=55e29ad7-f8c0-4319-8552-f6613a948a29 authentication.kubernetes.io/node-name: - ip-10-0-138-104.ec2.internal authentication.kubernetes.io/node-uid: - 0d147275-cfd2-443a-86b6-e1bb1ffce16b authentication.kubernetes.io/pod-name: - cluster-monitoring-operator-74bbf69bbb-m977k authentication.kubernetes.io/pod-uid: - 8e998891-ddc5-461c-b095-9f6d037029b9 groups: - system:serviceaccounts - system:serviceaccounts:openshift-monitoring - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client uid: 68850d10-e413-45a9-8fb9-f46a59943d73 usages: - digital signature - key encipherment - client auth username: system:serviceaccount:openshift-monitoring:cluster-monitoring-operator status: certificate: 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 conditions: - lastTransitionTime: "2026-06-10T20:04:03Z" lastUpdateTime: "2026-06-10T20:04:03Z" message: Auto-approved CSR "system:openshift:openshift-monitoring-5q772" reason: AutoApproved status: "True" type: Approved