--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-04-23T14:58:03Z" generateName: system:openshift:openshift-monitoring- labels: metrics.openshift.io/csr.subject: metrics-server managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: cluster-policy-controller operation: Update subresource: approval time: "2026-04-23T14:58:03Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-04-23T14:58:03Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} f:labels: .: {} f:metrics.openshift.io/csr.subject: {} manager: operator operation: Update time: "2026-04-23T14:58:03Z" name: system:openshift:openshift-monitoring-lxhpr resourceVersion: "7491" uid: 2049b63e-92dd-44d8-801b-6a6f9fa8aeed spec: extra: authentication.kubernetes.io/credential-id: - JTI=16b5f24a-b74a-4856-ba42-7e82de1c2d44 authentication.kubernetes.io/node-name: - ip-10-0-143-199.ec2.internal authentication.kubernetes.io/node-uid: - a4a682d5-5194-4015-b04e-468283595b70 authentication.kubernetes.io/pod-name: - cluster-monitoring-operator-75587bd455-vfgk4 authentication.kubernetes.io/pod-uid: - cfa4e428-dfaf-4150-9c9d-cbb0efd324e8 groups: - system:serviceaccounts - system:serviceaccounts:openshift-monitoring - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client uid: 8ccc5bd0-5ea6-4cdc-93f9-9c4d450dac24 usages: - digital signature - key encipherment - client auth username: system:serviceaccount:openshift-monitoring:cluster-monitoring-operator status: certificate: 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 conditions: - lastTransitionTime: "2026-04-23T14:58:03Z" lastUpdateTime: "2026-04-23T14:58:03Z" message: Auto-approved CSR "system:openshift:openshift-monitoring-lxhpr" reason: AutoApproved status: "True" type: Approved