--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-04-21T02:42:51Z" generateName: system:openshift:openshift-monitoring- labels: metrics.openshift.io/csr.subject: prometheus managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: cluster-policy-controller operation: Update subresource: approval time: "2026-04-21T02:42:51Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} f:labels: .: {} f:metrics.openshift.io/csr.subject: {} manager: operator operation: Update time: "2026-04-21T02:42:51Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-04-21T02:42:54Z" name: system:openshift:openshift-monitoring-2hdst resourceVersion: "7945" uid: 76f6a18d-9565-41b5-a244-330469e7ae7d spec: extra: authentication.kubernetes.io/credential-id: - JTI=963996e6-a9b9-4d19-a774-59d00226b8e2 authentication.kubernetes.io/node-name: - ip-10-0-131-170.ec2.internal authentication.kubernetes.io/node-uid: - cdd183e8-8de5-46c5-b2ca-fd27fd9265f3 authentication.kubernetes.io/pod-name: - cluster-monitoring-operator-75587bd455-fh8kw authentication.kubernetes.io/pod-uid: - d2caecf8-8d57-4c32-a979-ebd9271526a5 groups: - system:serviceaccounts - system:serviceaccounts:openshift-monitoring - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client uid: 036002f5-1b0e-4152-809f-854fa478bd70 usages: - digital signature - key encipherment - client auth username: system:serviceaccount:openshift-monitoring:cluster-monitoring-operator status: certificate: LS0tLS1CRUdJTiBDRVJUSUZJQ0FURS0tLS0tCk1JSUN0VENDQVoyZ0F3SUJBZ0lRZm5kMXYyQVQ3YVE1NnZTL0NtM1NNekFOQmdrcWhraUc5dzBCQVFzRkFEQXUKTVJJd0VBWURWUVFMRXdsdmNHVnVjMmhwWm5ReEdEQVdCZ05WQkFNVEQydDFZbVV0WTNOeUxYTnBaMjVsY2pBZQpGdzB5TmpBME1qRXdNak0zTlRSYUZ3MHlPREEwTWpBd01qTTNOVFJhTUVReFFqQkFCZ05WQkFNVE9YTjVjM1JsCmJUcHpaWEoyYVdObFlXTmpiM1Z1ZERwdmNHVnVjMmhwWm5RdGJXOXVhWFJ2Y21sdVp6cHdjbTl0WlhSb1pYVnoKTFdzNGN6QlpNQk1HQnlxR1NNNDlBZ0VHQ0NxR1NNNDlBd0VIQTBJQUJQdEVMU1FjUG9VZ2V1LzhUSFFiOWZFZwplSVFnUmZ3NmpvYmlOMHAxNitqMW5EK0EyYmFOeCtkbWVlMHZCWXV6OTl3ZWRpcmlDa1dRRVdDaGM5cmo2WU9qCmdZTXdnWUF3RGdZRFZSMFBBUUgvQkFRREFnV2dNQk1HQTFVZEpRUU1NQW9HQ0NzR0FRVUZCd01DTUF3R0ExVWQKRXdFQi93UUNNQUF3U3dZRFZSMGpCRVF3UW9CQXd3MWxaVnA5K3h5Uk1DZlhNdnJWR051Rjd6QlBBd2NTY1BJaApzNldUMTZmcXFBUndHVWx4ajFLOUZ6TitRZFNhMkxEaFNwTTByamJRS01vUWRIRW9rekFOQmdrcWhraUc5dzBCCkFRc0ZBQU9DQVFFQU93UDkxUzk4SkRUbjlnRUdUQ3hvazBIUVFOM0c1dCtDMzRBNHlONlFnWUtCMjZxRVZjVnoKc2V3RzdFWFY5VW5oRndObE1sTWhDOCt1aTZjZTR1MXFhQklXL05aSS8yRjVWaUFwMVY2MmVmR1RHa3FlMVU0NApMcXZEYmdpQlZQRWFDVmsxQ0ZKRzg5K1dzMmVGQmpjOEV6U3VBNElaeVBnSVpOWU1XOEVIVVRUeFpqYXNhcGpZCmR6d3pSTXp5VG8xakp3SDdIcnF4a3Zya3dRNisxalluMzJ5Q1h5MVIwYit3SW5XUmpXTEd0K2JIM0Q5K3VHYjIKYXd5TS8wcHFCSUNmT0p6aWE1Y1kwd2N5ZjcyZ1hmRnJxY3NQU25YTmxwdFkwN3M5c2NsYlpZeFBJaG0rcHNtYgpnR21CVjVYODJ1ZTR5blNMUVJZWHE0bFlueEkxK2daNm13PT0KLS0tLS1FTkQgQ0VSVElGSUNBVEUtLS0tLQo= conditions: - lastTransitionTime: "2026-04-21T02:42:51Z" lastUpdateTime: "2026-04-21T02:42:51Z" message: Auto-approved CSR "system:openshift:openshift-monitoring-2hdst" reason: AutoApproved status: "True" type: Approved