--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-04-20T12:15:09Z" generateName: system:openshift:openshift-monitoring- labels: metrics.openshift.io/csr.subject: prometheus managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: cluster-policy-controller operation: Update subresource: approval time: "2026-04-20T12:15:09Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} f:labels: .: {} f:metrics.openshift.io/csr.subject: {} manager: operator operation: Update time: "2026-04-20T12:15:09Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-04-20T12:15:10Z" name: system:openshift:openshift-monitoring-ql47h resourceVersion: "7651" uid: 8e73ff12-b891-4ce4-8aa3-8ca88df217d4 spec: extra: authentication.kubernetes.io/credential-id: - JTI=62dd7630-76ea-4e0f-b9f5-ae8fb8c8aee2 authentication.kubernetes.io/node-name: - ip-10-0-131-55.ec2.internal authentication.kubernetes.io/node-uid: - e9fa3d73-4781-4ff2-88b8-e6fc22d262a6 authentication.kubernetes.io/pod-name: - cluster-monitoring-operator-75587bd455-cg6bv authentication.kubernetes.io/pod-uid: - fa839e80-dc90-4cc7-9ee9-2520a9717383 groups: - system:serviceaccounts - system:serviceaccounts:openshift-monitoring - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client uid: 78f7fd09-b152-409a-a17a-e1c7a5c2d994 usages: - digital signature - key encipherment - client auth username: system:serviceaccount:openshift-monitoring:cluster-monitoring-operator status: certificate: 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 conditions: - lastTransitionTime: "2026-04-20T12:15:09Z" lastUpdateTime: "2026-04-20T12:15:09Z" message: Auto-approved CSR "system:openshift:openshift-monitoring-ql47h" reason: AutoApproved status: "True" type: Approved