--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-05-29T10:09:08Z" generateName: system:openshift:openshift-monitoring- labels: metrics.openshift.io/csr.subject: metrics-server managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: cluster-policy-controller operation: Update subresource: approval time: "2026-05-29T10:09:08Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-05-29T10:09:08Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} f:labels: .: {} f:metrics.openshift.io/csr.subject: {} manager: operator operation: Update time: "2026-05-29T10:09:08Z" name: system:openshift:openshift-monitoring-jjjnt resourceVersion: "7594" uid: 63f98415-5d97-4eba-9ba1-929c92e65d1f spec: extra: authentication.kubernetes.io/credential-id: - JTI=5ccfc744-eef8-477a-b957-822082818728 authentication.kubernetes.io/node-name: - ip-10-0-139-40.ec2.internal authentication.kubernetes.io/node-uid: - 3e8ad4ea-7141-4341-9836-1416121d952a authentication.kubernetes.io/pod-name: - cluster-monitoring-operator-6c75959455-8lcw6 authentication.kubernetes.io/pod-uid: - 85cc7205-940e-455a-ac69-a45ffe88300c groups: - system:serviceaccounts - system:serviceaccounts:openshift-monitoring - system:authenticated request: LS0tLS1CRUdJTiBDRVJUSUZJQ0FURSBSRVFVRVNULS0tLS0KTUlIL01JR21BZ0VBTUVReFFqQkFCZ05WQkFNVE9YTjVjM1JsYlRwelpYSjJhV05sWVdOamIzVnVkRHB2Y0dWdQpjMmhwWm5RdGJXOXVhWFJ2Y21sdVp6cHRaWFJ5YVdOekxYTmxjblpsY2pCWk1CTUdCeXFHU000OUFnRUdDQ3FHClNNNDlBd0VIQTBJQUJDdEFWYWUzY1JyNVRrTzdHS3B5NFhWc0N6QUZud2VlTHhvUkFXaWl1NUZmcS9CclVQV1UKeExYa3NUeW5jVFV5WkJ3NTR6R01kaDBrYkJrYitGK0FLeWlnQURBS0JnZ3Foa2pPUFFRREFnTklBREJGQWlCYQp5NGNJL2VwTnNqOHlrQTlYTkxoRFRNWkMvNUVJUDhRU2p4YTJzY3lBMndJaEFMRWpQMnJTU2x3Nk5UeVZraG5MCjA1V3Y0TzRFa2V1M1AyVzZaV0JhYVhNNQotLS0tLUVORCBDRVJUSUZJQ0FURSBSRVFVRVNULS0tLS0K signerName: kubernetes.io/kube-apiserver-client uid: 6c6a3d49-e15c-4fdd-b77f-1bb01862aecd usages: - digital signature - key encipherment - client auth username: system:serviceaccount:openshift-monitoring:cluster-monitoring-operator status: certificate: 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 conditions: - lastTransitionTime: "2026-05-29T10:09:08Z" lastUpdateTime: "2026-05-29T10:09:08Z" message: Auto-approved CSR "system:openshift:openshift-monitoring-jjjnt" reason: AutoApproved status: "True" type: Approved