--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-04-20T16:26:08Z" generateName: system:openshift:openshift-monitoring- labels: metrics.openshift.io/csr.subject: prometheus managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: cluster-policy-controller operation: Update subresource: approval time: "2026-04-20T16:26:08Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-04-20T16:26:08Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} f:labels: .: {} f:metrics.openshift.io/csr.subject: {} manager: operator operation: Update time: "2026-04-20T16:26:08Z" name: system:openshift:openshift-monitoring-twffk resourceVersion: "8547" uid: fe9c630c-1b52-4be0-82ae-86b2427f9689 spec: extra: authentication.kubernetes.io/credential-id: - JTI=55c7306d-909e-4c75-81bd-9d621bf00369 authentication.kubernetes.io/node-name: - ip-10-0-130-72.ec2.internal authentication.kubernetes.io/node-uid: - ce1ec58e-6d30-4423-a144-c9452ad8a921 authentication.kubernetes.io/pod-name: - cluster-monitoring-operator-75587bd455-rqblb authentication.kubernetes.io/pod-uid: - b2a0a168-de3a-4df1-89e1-c8d831ef5ada groups: - system:serviceaccounts - system:serviceaccounts:openshift-monitoring - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client uid: 5e49a097-29f0-48d6-b108-785b1012e8ae usages: - digital signature - key encipherment - client auth username: system:serviceaccount:openshift-monitoring:cluster-monitoring-operator status: certificate: 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 conditions: - lastTransitionTime: "2026-04-20T16:26:08Z" lastUpdateTime: "2026-04-20T16:26:08Z" message: Auto-approved CSR "system:openshift:openshift-monitoring-twffk" reason: AutoApproved status: "True" type: Approved