--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-05-28T14:55:23Z" generateName: system:openshift:openshift-monitoring- labels: metrics.openshift.io/csr.subject: prometheus managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: cluster-policy-controller operation: Update subresource: approval time: "2026-05-28T14:55:23Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-05-28T14:55:23Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} f:labels: .: {} f:metrics.openshift.io/csr.subject: {} manager: operator operation: Update time: "2026-05-28T14:55:23Z" name: system:openshift:openshift-monitoring-28d7j resourceVersion: "8239" uid: 76378f6b-acdd-4c7e-964f-3992a98a7877 spec: extra: authentication.kubernetes.io/credential-id: - JTI=385b0d24-6158-499d-bc1b-7955af89be54 authentication.kubernetes.io/node-name: - ip-10-0-131-234.ec2.internal authentication.kubernetes.io/node-uid: - 4efe272d-5993-4105-81b3-e4404fc08ed9 authentication.kubernetes.io/pod-name: - cluster-monitoring-operator-6c75959455-mzfcx authentication.kubernetes.io/pod-uid: - 69b10f97-38a2-4cd7-b9b1-b9f43d0ed481 groups: - system:serviceaccounts - system:serviceaccounts:openshift-monitoring - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client uid: 5feb9467-fec7-4573-9fa5-fd1f0ee28ce5 usages: - digital signature - key encipherment - client auth username: system:serviceaccount:openshift-monitoring:cluster-monitoring-operator status: certificate: LS0tLS1CRUdJTiBDRVJUSUZJQ0FURS0tLS0tCk1JSUN0VENDQVoyZ0F3SUJBZ0lRVnMvY3hCMDlBR2R2bDlEazE0cTgxakFOQmdrcWhraUc5dzBCQVFzRkFEQXUKTVJJd0VBWURWUVFMRXdsdmNHVnVjMmhwWm5ReEdEQVdCZ05WQkFNVEQydDFZbVV0WTNOeUxYTnBaMjVsY2pBZQpGdzB5TmpBMU1qZ3hORFV3TWpOYUZ3MHlPREExTWpjeE5EVXdNak5hTUVReFFqQkFCZ05WQkFNVE9YTjVjM1JsCmJUcHpaWEoyYVdObFlXTmpiM1Z1ZERwdmNHVnVjMmhwWm5RdGJXOXVhWFJ2Y21sdVp6cHdjbTl0WlhSb1pYVnoKTFdzNGN6QlpNQk1HQnlxR1NNNDlBZ0VHQ0NxR1NNNDlBd0VIQTBJQUJNeTRpVzVudm14LzMzQjl5M0VnVUNtRwo1ekVDUW1CalEyaVgzWnFyekUrc0JDNWhtNWV5aTF5LzRHTHhiODRVZElDQzNua3BFSC9MemZBd21VS2FQZUtqCmdZTXdnWUF3RGdZRFZSMFBBUUgvQkFRREFnV2dNQk1HQTFVZEpRUU1NQW9HQ0NzR0FRVUZCd01DTUF3R0ExVWQKRXdFQi93UUNNQUF3U3dZRFZSMGpCRVF3UW9CQXk0bXIybmZyNjU1SjdWWi9CdEg4Q1gvMUVjMUpVYkxvWnFZbApZbnlkbFk1bXpOdFpQY000ZEYrWmluNmFnaU85M0FJaXc3OXF5NHp3ZFlkbWJBYm5OVEFOQmdrcWhraUc5dzBCCkFRc0ZBQU9DQVFFQUxUYllTeHdXSitUdGh6REl3WE9KMmd3ZjliOG5nQ09Cc010VWdPNDRCR0RadXJNOEFIVXcKbU5aakZWZ3ZFMkJvZVEyVkZKbnZkVzgrV29pdkU4OUpwTHZncEJDeXlWRVhRcWxCRVZSRXB6TVp6eFlwMW13TApjOHBpTzVlOFZGVjQvY2VZRCt6U2hycFpmK3RkSy8xaGJnTnUvZ3dtSWw4dVpCUlZoYXZRdDc2RFZkRVRWYTJGCjJhclFxL0U1MWxoSU5vcDRPRnpybUYvRFE5RWI5OUV5QUxGUDRIRU5PZHo0S1hKb05lQlFVS3RJTGU1NFRSencKSXRHaERDOUpFbExEZTVsZzAyOTJDY2VnMDE5WWhiTlRDOFZpY2RxS3Bwd04zWTVSSk82UCtRSk9NV3ltM2t2RgpKME1Ia0YzR3B6eVVielg0K3lGY0ZURmx0TUw4bm5PbGpRPT0KLS0tLS1FTkQgQ0VSVElGSUNBVEUtLS0tLQo= conditions: - lastTransitionTime: "2026-05-28T14:55:23Z" lastUpdateTime: "2026-05-28T14:55:23Z" message: Auto-approved CSR "system:openshift:openshift-monitoring-28d7j" reason: AutoApproved status: "True" type: Approved