--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-04-20T17:51:13Z" generateName: system:openshift:openshift-monitoring- labels: metrics.openshift.io/csr.subject: prometheus managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: cluster-policy-controller operation: Update subresource: approval time: "2026-04-20T17:51:13Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-04-20T17:51:13Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} f:labels: .: {} f:metrics.openshift.io/csr.subject: {} manager: operator operation: Update time: "2026-04-20T17:51:13Z" name: system:openshift:openshift-monitoring-49fqb resourceVersion: "8401" uid: 8b60af3f-d470-4145-a2bf-a80d14ae6afe spec: extra: authentication.kubernetes.io/credential-id: - JTI=bdf9c380-7706-4990-8b52-adc4c4a50837 authentication.kubernetes.io/node-name: - ip-10-0-135-49.ec2.internal authentication.kubernetes.io/node-uid: - c0d6be4b-25c0-49ac-9dff-24e85cc864eb authentication.kubernetes.io/pod-name: - cluster-monitoring-operator-75587bd455-wnkt8 authentication.kubernetes.io/pod-uid: - 50c85d10-1859-45c6-8b15-0c1dfc8e482e groups: - system:serviceaccounts - system:serviceaccounts:openshift-monitoring - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client uid: 5a7a3972-3b87-4a8b-a001-63fe14daf743 usages: - digital signature - key encipherment - client auth username: system:serviceaccount:openshift-monitoring:cluster-monitoring-operator status: certificate: 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 conditions: - lastTransitionTime: "2026-04-20T17:51:13Z" lastUpdateTime: "2026-04-20T17:51:13Z" message: Auto-approved CSR "system:openshift:openshift-monitoring-49fqb" reason: AutoApproved status: "True" type: Approved