--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-05-20T21:28:12Z" generateName: system:openshift:openshift-monitoring- labels: metrics.openshift.io/csr.subject: metrics-server managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: cluster-policy-controller operation: Update subresource: approval time: "2026-05-20T21:28:12Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-05-20T21:28:12Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} f:labels: .: {} f:metrics.openshift.io/csr.subject: {} manager: operator operation: Update time: "2026-05-20T21:28:12Z" name: system:openshift:openshift-monitoring-cbtlm resourceVersion: "8661" uid: 8ecf05af-f04e-4fcf-9aac-f25c4bef2aac spec: extra: authentication.kubernetes.io/credential-id: - JTI=10c92dba-94a1-4bed-a858-4ae0b3f6d227 authentication.kubernetes.io/node-name: - ip-10-0-141-6.ec2.internal authentication.kubernetes.io/node-uid: - cbbdc3f0-c808-4b48-ad23-bd79b4422d1d authentication.kubernetes.io/pod-name: - cluster-monitoring-operator-6c75959455-tcx5w authentication.kubernetes.io/pod-uid: - 9223b24e-bf0d-446a-981a-e317cbdb6edc groups: - system:serviceaccounts - system:serviceaccounts:openshift-monitoring - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client uid: f92c57d0-6a90-4a24-8f16-63dcd973e237 usages: - digital signature - key encipherment - client auth username: system:serviceaccount:openshift-monitoring:cluster-monitoring-operator status: certificate: LS0tLS1CRUdJTiBDRVJUSUZJQ0FURS0tLS0tCk1JSUN0VENDQVoyZ0F3SUJBZ0lRWWQ2QzFSbzllRkZSYWNsSEE2RjRnakFOQmdrcWhraUc5dzBCQVFzRkFEQXUKTVJJd0VBWURWUVFMRXdsdmNHVnVjMmhwWm5ReEdEQVdCZ05WQkFNVEQydDFZbVV0WTNOeUxYTnBaMjVsY2pBZQpGdzB5TmpBMU1qQXlNVEl6TVRKYUZ3MHlPREExTVRreU1USXpNVEphTUVReFFqQkFCZ05WQkFNVE9YTjVjM1JsCmJUcHpaWEoyYVdObFlXTmpiM1Z1ZERwdmNHVnVjMmhwWm5RdGJXOXVhWFJ2Y21sdVp6cHRaWFJ5YVdOekxYTmwKY25abGNqQlpNQk1HQnlxR1NNNDlBZ0VHQ0NxR1NNNDlBd0VIQTBJQUJOeU1MdWowRHJ1aUMvVHpGUDYxS3Zaagovblo4SEJveG04d05kdkZGL0g2VkNmUjV3VVdKbk05YkZtcWlidzd1SHpabDRsK1BkQkVnMXFESTdlZlJqTWVqCmdZTXdnWUF3RGdZRFZSMFBBUUgvQkFRREFnV2dNQk1HQTFVZEpRUU1NQW9HQ0NzR0FRVUZCd01DTUF3R0ExVWQKRXdFQi93UUNNQUF3U3dZRFZSMGpCRVF3UW9CQVVJYVdmNzZOMmY5MExQK2Q0Z2Jnc1NKd0pGUktvSVlmYXV2UgpiZSs4TU9jR1hvdTdhbkc3VFB5RFNjcks1ajFBMW5CczZKMytCV0dxMDE2QU9VZW5CakFOQmdrcWhraUc5dzBCCkFRc0ZBQU9DQVFFQXdmYWl3cTBtdEdPTE5aREYvb3AxdzBCTG5KdU54am9LWEkxVmkzdEJ1T25jV2Y3enV4QVMKWi9hS21YRU81dFZybStOUzFVNEFFWktmbDlIT0NuNW02YzZpR0l4d3VjUytMaU1uckI2a0I0YTVKUE91ZjAzUQpaeGtzWm5zcTRlZ2xkWUp3SFJENDBpL2tsbjNmSzZMeWZJTnVrL1JXQ3ptWkhNTmI1OTRveFVQbWZzS3lZeHhJCllzNWNqa2VIK0ZYKzFNemlkaUNNdzdlWGpQSUhLZjArS0lMWTJiSXJkTkhudEJyN2NoOGo1UURkZlNpVGN3MFgKR1hrY2J4VHFxNFVSeFcxMGZra2xTVTNCMG8yblRtSlowWXFhcjdMWjZUM3NQa1c1M1V2TzFPWmdCVFNBRXU1ZQp2NmlhZW9Cd0ppM1pySEhZb0JQck1oU25Fb1lCK2ZVNDhBPT0KLS0tLS1FTkQgQ0VSVElGSUNBVEUtLS0tLQo= conditions: - lastTransitionTime: "2026-05-20T21:28:12Z" lastUpdateTime: "2026-05-20T21:28:12Z" message: Auto-approved CSR "system:openshift:openshift-monitoring-cbtlm" reason: AutoApproved status: "True" type: Approved