--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-06-09T21:49:26Z" generateName: system:openshift:openshift-monitoring- labels: metrics.openshift.io/csr.subject: metrics-server managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: cluster-policy-controller operation: Update subresource: approval time: "2026-06-09T21:49:26Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-06-09T21:49:26Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} f:labels: .: {} f:metrics.openshift.io/csr.subject: {} manager: operator operation: Update time: "2026-06-09T21:49:26Z" name: system:openshift:openshift-monitoring-rbf6w resourceVersion: "9423" uid: b0e4def8-0f72-461a-a9a4-11d8e9c7346b spec: extra: authentication.kubernetes.io/credential-id: - JTI=1258bfc2-33fa-4979-9db1-6d0cad0278e8 authentication.kubernetes.io/node-name: - ip-10-0-128-8.ec2.internal authentication.kubernetes.io/node-uid: - 96d11913-c8a4-4d79-a5fe-f86164f1a866 authentication.kubernetes.io/pod-name: - cluster-monitoring-operator-74bbf69bbb-d7slq authentication.kubernetes.io/pod-uid: - 92724e1f-bee6-4b01-a17f-ef6ad42dad4f groups: - system:serviceaccounts - system:serviceaccounts:openshift-monitoring - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client uid: 42d6264b-9b87-46a2-a342-ed05a6a61bf7 usages: - digital signature - key encipherment - client auth username: system:serviceaccount:openshift-monitoring:cluster-monitoring-operator status: certificate: LS0tLS1CRUdJTiBDRVJUSUZJQ0FURS0tLS0tCk1JSUN0VENDQVoyZ0F3SUJBZ0lRRmVKTXdLdnNrckpPUmllV2hZMXkyREFOQmdrcWhraUc5dzBCQVFzRkFEQXUKTVJJd0VBWURWUVFMRXdsdmNHVnVjMmhwWm5ReEdEQVdCZ05WQkFNVEQydDFZbVV0WTNOeUxYTnBaMjVsY2pBZQpGdzB5TmpBMk1Ea3lNVFEwTWpaYUZ3MHlPREEyTURneU1UUTBNalphTUVReFFqQkFCZ05WQkFNVE9YTjVjM1JsCmJUcHpaWEoyYVdObFlXTmpiM1Z1ZERwdmNHVnVjMmhwWm5RdGJXOXVhWFJ2Y21sdVp6cHRaWFJ5YVdOekxYTmwKY25abGNqQlpNQk1HQnlxR1NNNDlBZ0VHQ0NxR1NNNDlBd0VIQTBJQUJLNEFzazdxS1BhMXoxSEphblI0WTUzLwpoSXFUTWtUQjE0Mm0yL1NkbVA0RHhESGRBMW1kbzE5MnM4NjZMNTZmcE9zUXMxTi80WXcwbmhCWlpzaktHK0tqCmdZTXdnWUF3RGdZRFZSMFBBUUgvQkFRREFnV2dNQk1HQTFVZEpRUU1NQW9HQ0NzR0FRVUZCd01DTUF3R0ExVWQKRXdFQi93UUNNQUF3U3dZRFZSMGpCRVF3UW9CQWRxS2hDdm8wNlZIZkJUUDIwN3VKdUhEbjhkV2pXYitXYjVaTwpQbC9Ja3JnYVBSSEN2Mjc5Z1VBYXhtN0pUUlFOWGo0NXhvSzVpQktWVndqVlBVYTY4VEFOQmdrcWhraUc5dzBCCkFRc0ZBQU9DQVFFQUJnZEovbmdBMmxtMlUvWVpOaVFpTUZFYTFmUS9DdFZnUThua29uS05UZmIvQmZmTkMvUi8KMWRWQ2ozRXZObTE1d05WcEhFbmtQenZiVldUbHFJT1FvcFVIeFkvRFNJY0xCcXM2dVFtc2h3bU1CdytwSms3cAo1KzNFZnhtdXgyRGd3WTl4V3JXckN5WXFLL0dUM3E1TnhCeXpKNkxlN2pHT256aEg4YXV4bWc4cWJZM1RIelVzCjlVVk5TcHNDZjROZjVSUEtTZWxMUXFPZXhHZi9DVVZHQkJBVUtHWHlySFR2Y0Q4d0llSUo0UzRSeGhBWjVJdG8KaldsMllkVEh0U3VJQ2kzbXk2NDNEZFd6dHVPM0laQjZvU1BhdFBYRVI2V01BRHZrRlZBc2N0emN3amJRZ1dNUAp2OXVrWXoybXBqNEx1WnVCcS9KSUJ4c0NRWGhDY21QakRBPT0KLS0tLS1FTkQgQ0VSVElGSUNBVEUtLS0tLQo= conditions: - lastTransitionTime: "2026-06-09T21:49:26Z" lastUpdateTime: "2026-06-09T21:49:26Z" message: Auto-approved CSR "system:openshift:openshift-monitoring-rbf6w" reason: AutoApproved status: "True" type: Approved