--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-06-02T09:08:09Z" generateName: system:openshift:openshift-monitoring- labels: metrics.openshift.io/csr.subject: prometheus managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: cluster-policy-controller operation: Update subresource: approval time: "2026-06-02T09:08:09Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} f:labels: .: {} f:metrics.openshift.io/csr.subject: {} manager: operator operation: Update time: "2026-06-02T09:08:09Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-06-02T09:08:10Z" name: system:openshift:openshift-monitoring-cthqw resourceVersion: "8106" uid: a76cd142-bcc8-44b5-ba55-4301172f7753 spec: extra: authentication.kubernetes.io/credential-id: - JTI=463fb426-2ee2-402c-8d97-436d65f88bd9 authentication.kubernetes.io/node-name: - ip-10-0-138-61.ec2.internal authentication.kubernetes.io/node-uid: - 6a8e24aa-d164-45ef-9bdb-2d8c5de7a305 authentication.kubernetes.io/pod-name: - cluster-monitoring-operator-69b6cbdb88-h2k9p authentication.kubernetes.io/pod-uid: - aa46410a-13ce-49ce-8dde-b5aa6b5fa20a groups: - system:serviceaccounts - system:serviceaccounts:openshift-monitoring - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client uid: 25b89bf8-2eb1-4815-8d6b-39a3ead4fd46 usages: - digital signature - key encipherment - client auth username: system:serviceaccount:openshift-monitoring:cluster-monitoring-operator status: certificate: LS0tLS1CRUdJTiBDRVJUSUZJQ0FURS0tLS0tCk1JSUN0VENDQVoyZ0F3SUJBZ0lRWk1Wenp2eEhMSjJHUUF2S1R1bWp1akFOQmdrcWhraUc5dzBCQVFzRkFEQXUKTVJJd0VBWURWUVFMRXdsdmNHVnVjMmhwWm5ReEdEQVdCZ05WQkFNVEQydDFZbVV0WTNOeUxYTnBaMjVsY2pBZQpGdzB5TmpBMk1ESXdPVEF6TVRCYUZ3MHlPREEyTURFd09UQXpNVEJhTUVReFFqQkFCZ05WQkFNVE9YTjVjM1JsCmJUcHpaWEoyYVdObFlXTmpiM1Z1ZERwdmNHVnVjMmhwWm5RdGJXOXVhWFJ2Y21sdVp6cHdjbTl0WlhSb1pYVnoKTFdzNGN6QlpNQk1HQnlxR1NNNDlBZ0VHQ0NxR1NNNDlBd0VIQTBJQUJKN0ZiY1VjYzRFNzVNUXl3ejBqUDFjcgo0SmZkSGFzWHpROStzTUR4MWdGc2JweVhUblVkUm9lRW9sNytSVGxPSzVWOFlVOVVYQ1JtblJvU3BhaFdqSitqCmdZTXdnWUF3RGdZRFZSMFBBUUgvQkFRREFnV2dNQk1HQTFVZEpRUU1NQW9HQ0NzR0FRVUZCd01DTUF3R0ExVWQKRXdFQi93UUNNQUF3U3dZRFZSMGpCRVF3UW9CQTI3amowWmt3KzMvVU5WK28zbzB4UUpWdEVkaEZEbWRqRGp0aQpDWm45RHlISGNqYmhESGpDMHZ0WVhyVExKTE1raXlvUjN1cjVLRzNuZHg2blZUb0JqREFOQmdrcWhraUc5dzBCCkFRc0ZBQU9DQVFFQW9sU2k0N1NpclcxcTY2Q3hTTzBHUlZ4TUJ2VGEwUFNsaGp2QXM4dXpSRCtiQUI0OTNES2sKTStYNThIRUh0UFFZUDQ3YWl6SVBXbnRrSi8zcHR3NDVkZmpEeCtpT0xmWklzVnJSNlZzMld1NnA4UHR2YUphZgp0WFZUSDBkMEFqR0hJOFV2SVZUUkQ4WGphcTFBWGhHVG9zVnJZZDlXSHVjSXFWaHdTOFVILzRJNlJURnJBZE50CjVkSE92WW1ENmV4eVBmSklaU3BxY29kWmo1VVRxWC81M3RMS3padjBJOUVaYXp1SHdFYzhHSWVhN2E1QTdPb2EKeXBCTjRCMU5WSWRwSm9DTzRONFdHOGQwNHV6N1JwZzk0bjF0QnFOYU5Jdis2Z2M2UU0xZnZmSVVNY1NHbkQvZApJcFBsVUNaaXFTNUtNdFcrSG10dWZLd0M3d0pwM2dXVFJ3PT0KLS0tLS1FTkQgQ0VSVElGSUNBVEUtLS0tLQo= conditions: - lastTransitionTime: "2026-06-02T09:08:09Z" lastUpdateTime: "2026-06-02T09:08:09Z" message: Auto-approved CSR "system:openshift:openshift-monitoring-cthqw" reason: AutoApproved status: "True" type: Approved