--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-06-11T14:21:06Z" generateName: system:openshift:openshift-monitoring- labels: metrics.openshift.io/csr.subject: metrics-server managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: cluster-policy-controller operation: Update subresource: approval time: "2026-06-11T14:21:06Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-06-11T14:21:06Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} f:labels: .: {} f:metrics.openshift.io/csr.subject: {} manager: operator operation: Update time: "2026-06-11T14:21:06Z" name: system:openshift:openshift-monitoring-xcvmb resourceVersion: "9280" uid: 39cc1d25-8ec0-4fac-8c3d-b984322c3595 spec: extra: authentication.kubernetes.io/credential-id: - JTI=af9a7dc7-98e6-4d6e-88cc-ff53ca76d8ca authentication.kubernetes.io/node-name: - ip-10-0-135-9.ec2.internal authentication.kubernetes.io/node-uid: - b06a96cc-712b-41eb-84af-1b9a68e6ec25 authentication.kubernetes.io/pod-name: - cluster-monitoring-operator-74bbf69bbb-7j6zw authentication.kubernetes.io/pod-uid: - cf108c62-9f3d-4f83-9419-843e30321ef4 groups: - system:serviceaccounts - system:serviceaccounts:openshift-monitoring - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client uid: 4404e681-4a62-43fd-8bd7-2e50342c8231 usages: - digital signature - key encipherment - client auth username: system:serviceaccount:openshift-monitoring:cluster-monitoring-operator status: certificate: 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 conditions: - lastTransitionTime: "2026-06-11T14:21:06Z" lastUpdateTime: "2026-06-11T14:21:06Z" message: Auto-approved CSR "system:openshift:openshift-monitoring-xcvmb" reason: AutoApproved status: "True" type: Approved