--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-05-20T20:26:42Z" generateName: system:openshift:openshift-monitoring- labels: metrics.openshift.io/csr.subject: prometheus managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: cluster-policy-controller operation: Update subresource: approval time: "2026-05-20T20:26:42Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-05-20T20:26:42Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} f:labels: .: {} f:metrics.openshift.io/csr.subject: {} manager: operator operation: Update time: "2026-05-20T20:26:42Z" name: system:openshift:openshift-monitoring-9s4tf resourceVersion: "8288" uid: d38e1705-d1d7-4769-8f12-99ae3a293d14 spec: extra: authentication.kubernetes.io/credential-id: - JTI=2d060872-e988-439c-9c21-eba0bf9d6b79 authentication.kubernetes.io/node-name: - ip-10-0-137-153.ec2.internal authentication.kubernetes.io/node-uid: - d4ac24ff-6b8e-4efe-986b-2327672bde61 authentication.kubernetes.io/pod-name: - cluster-monitoring-operator-6c75959455-skpvx authentication.kubernetes.io/pod-uid: - 90267c43-b7a3-418f-a134-8a7522b35bbf groups: - system:serviceaccounts - system:serviceaccounts:openshift-monitoring - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client uid: dc8ab315-6d5c-4939-85c3-d9ecc728afda usages: - digital signature - key encipherment - client auth username: system:serviceaccount:openshift-monitoring:cluster-monitoring-operator status: certificate: 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 conditions: - lastTransitionTime: "2026-05-20T20:26:42Z" lastUpdateTime: "2026-05-20T20:26:42Z" message: Auto-approved CSR "system:openshift:openshift-monitoring-9s4tf" reason: AutoApproved status: "True" type: Approved