--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-06-15T15:10:00Z" generateName: system:openshift:openshift-monitoring- labels: metrics.openshift.io/csr.subject: metrics-server managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: cluster-policy-controller operation: Update subresource: approval time: "2026-06-15T15:10:00Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} f:labels: .: {} f:metrics.openshift.io/csr.subject: {} manager: operator operation: Update time: "2026-06-15T15:10:00Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-06-15T15:10:10Z" name: system:openshift:openshift-monitoring-sm2zm resourceVersion: "9154" uid: 431ae1e1-49d2-4cf8-a5ee-3b1e20057008 spec: extra: authentication.kubernetes.io/credential-id: - JTI=c5471f91-6c6f-406b-82a7-71e084062377 authentication.kubernetes.io/node-name: - ip-10-0-136-206.ec2.internal authentication.kubernetes.io/node-uid: - 2a7b6097-f8df-4bf9-8901-248158b5139a authentication.kubernetes.io/pod-name: - cluster-monitoring-operator-f9d7df769-wh5sl authentication.kubernetes.io/pod-uid: - ce939c60-ddcd-4a38-958e-94e45439e2a4 groups: - system:serviceaccounts - system:serviceaccounts:openshift-monitoring - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client uid: 9ebca448-1ee2-4622-8a17-216b866dc955 usages: - digital signature - key encipherment - client auth username: system:serviceaccount:openshift-monitoring:cluster-monitoring-operator status: certificate: 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 conditions: - lastTransitionTime: "2026-06-15T15:10:00Z" lastUpdateTime: "2026-06-15T15:10:00Z" message: Auto-approved CSR "system:openshift:openshift-monitoring-sm2zm" reason: AutoApproved status: "True" type: Approved