--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-05-28T15:10:09Z" generateName: system:openshift:openshift-monitoring- labels: metrics.openshift.io/csr.subject: metrics-server managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: cluster-policy-controller operation: Update subresource: approval time: "2026-05-28T15:10:09Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-05-28T15:10:09Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} f:labels: .: {} f:metrics.openshift.io/csr.subject: {} manager: operator operation: Update time: "2026-05-28T15:10:09Z" name: system:openshift:openshift-monitoring-c6d8z resourceVersion: "8436" uid: f90db7d2-c403-40bf-aa1f-204fd1b5322a spec: extra: authentication.kubernetes.io/credential-id: - JTI=0e3b316f-73b8-431c-8092-548cc43fb5ea authentication.kubernetes.io/node-name: - ip-10-0-140-141.ec2.internal authentication.kubernetes.io/node-uid: - a20462f6-d5d4-415b-b74a-b2903e5cc5a6 authentication.kubernetes.io/pod-name: - cluster-monitoring-operator-6c75959455-7zpd4 authentication.kubernetes.io/pod-uid: - b6714928-0dd7-4b82-b82c-9c83f3967f52 groups: - system:serviceaccounts - system:serviceaccounts:openshift-monitoring - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client uid: 286c4a90-6bb2-4ae0-a328-e4b0b0b2c670 usages: - digital signature - key encipherment - client auth username: system:serviceaccount:openshift-monitoring:cluster-monitoring-operator status: certificate: LS0tLS1CRUdJTiBDRVJUSUZJQ0FURS0tLS0tCk1JSUN0VENDQVoyZ0F3SUJBZ0lRWk5yQlo4Y1pEQWtXVEZsQWhsblA0akFOQmdrcWhraUc5dzBCQVFzRkFEQXUKTVJJd0VBWURWUVFMRXdsdmNHVnVjMmhwWm5ReEdEQVdCZ05WQkFNVEQydDFZbVV0WTNOeUxYTnBaMjVsY2pBZQpGdzB5TmpBMU1qZ3hOVEExTURsYUZ3MHlPREExTWpjeE5UQTFNRGxhTUVReFFqQkFCZ05WQkFNVE9YTjVjM1JsCmJUcHpaWEoyYVdObFlXTmpiM1Z1ZERwdmNHVnVjMmhwWm5RdGJXOXVhWFJ2Y21sdVp6cHRaWFJ5YVdOekxYTmwKY25abGNqQlpNQk1HQnlxR1NNNDlBZ0VHQ0NxR1NNNDlBd0VIQTBJQUJOak1sK291QytWY1RqLzJabXg1MldHNQphakdPekYxUVVSRkU2NFR0Y3luVUdtQWd5QmdqSzEySEVmZEd3aUd5azVQWklQeS9QZkxqbnhmUG44a0h3UTZqCmdZTXdnWUF3RGdZRFZSMFBBUUgvQkFRREFnV2dNQk1HQTFVZEpRUU1NQW9HQ0NzR0FRVUZCd01DTUF3R0ExVWQKRXdFQi93UUNNQUF3U3dZRFZSMGpCRVF3UW9CQW5tWEhWemxwK3JRdkV6Qk1tRzJ3Uzh0RkllSDNIWncxWW42aApiQURwNjV4R2x0YTFGVUJLdGYvQno5d3pBYVF4Vk4rSVQyUkp5b0hNVWdldXFVQm5BVEFOQmdrcWhraUc5dzBCCkFRc0ZBQU9DQVFFQXloNG00R1FnUXcyUnh6TUorQ1BOd3J2ZmtTV3AyWHJTRlJKbEtGYW5HbHFxdmZVQ0ZvcjAKbWNITXU5QVBibTRTZlg3NnU3cWxzRURhK1VvZ0FoZkhpZDNObUwrenVDYmdwbWpYbjZVanI1bjNibTZqbFd0VQoyOGZaRDgzYWJNZmZmVTl1ZFhSeEprSTdHQlpvUU0xcHRnc1NMRlVwNWxRYkgwR0RWOFVERmxKbldIbkdDWDN0CmR4TnRmVk9YQ1VnSm84bW5xUmd0djlEclJkaUZGcE9EQW5LRmJERmxWWHVMVG5LbVhSTU91bmtONWdWU2RONCsKQS93Y0ttS2tPUTdxMDgrcUQ5QXNzS084c29FME1Hd2dBZnhIbHN4TEpOVEs1bG9WamdBeW5rM3BaWGV5WnhPMgppaGtOT3ZWVkYzaThJTzBOeHl2Vkwwa3lWVlhGdXFzVWl3PT0KLS0tLS1FTkQgQ0VSVElGSUNBVEUtLS0tLQo= conditions: - lastTransitionTime: "2026-05-28T15:10:09Z" lastUpdateTime: "2026-05-28T15:10:09Z" message: Auto-approved CSR "system:openshift:openshift-monitoring-c6d8z" reason: AutoApproved status: "True" type: Approved