--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-06-10T12:52:47Z" generateName: system:openshift:openshift-monitoring- labels: metrics.openshift.io/csr.subject: prometheus managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: cluster-policy-controller operation: Update subresource: approval time: "2026-06-10T12:52:47Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} f:labels: .: {} f:metrics.openshift.io/csr.subject: {} manager: operator operation: Update time: "2026-06-10T12:52:47Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-06-10T12:52:55Z" name: system:openshift:openshift-monitoring-r2nz7 resourceVersion: "9108" uid: 77fbf208-7054-4f02-989c-d01be4d36538 spec: extra: authentication.kubernetes.io/credential-id: - JTI=91057e1f-c1f3-4953-8197-6bb449f244e8 authentication.kubernetes.io/node-name: - ip-10-0-130-85.ec2.internal authentication.kubernetes.io/node-uid: - d47cc9f1-dfbf-4911-8650-3646b866b6eb authentication.kubernetes.io/pod-name: - cluster-monitoring-operator-74bbf69bbb-gp999 authentication.kubernetes.io/pod-uid: - b68acf57-de21-4ece-9a18-a65ee016c77b groups: - system:serviceaccounts - system:serviceaccounts:openshift-monitoring - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client uid: 234d8540-c6fa-495f-870f-b6368594ef2e usages: - digital signature - key encipherment - client auth username: system:serviceaccount:openshift-monitoring:cluster-monitoring-operator status: certificate: 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 conditions: - lastTransitionTime: "2026-06-10T12:52:47Z" lastUpdateTime: "2026-06-10T12:52:47Z" message: Auto-approved CSR "system:openshift:openshift-monitoring-r2nz7" reason: AutoApproved status: "True" type: Approved