--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-03-19T09:20:29Z" generateName: system:openshift:openshift-authenticator- labels: authentication.openshift.io/csr: openshift-authenticator managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} f:labels: .: {} f:authentication.openshift.io/csr: {} manager: authentication-operator operation: Update time: "2026-03-19T09:20:29Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: authentication-operator operation: Update subresource: approval time: "2026-03-19T09:20:32Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-03-19T09:20:34Z" name: system:openshift:openshift-authenticator-ktpm9 resourceVersion: "4410" uid: 1fd4c9ad-04e9-48c9-9407-fe6a876aead5 spec: extra: authentication.kubernetes.io/credential-id: - JTI=d5f04697-e19d-4072-98da-35d728417821 authentication.kubernetes.io/node-name: - master-0 authentication.kubernetes.io/node-uid: - 7d9506da-3989-4515-b997-bf7a1e230991 authentication.kubernetes.io/pod-name: - authentication-operator-5885bfd7f4-k4dfd authentication.kubernetes.io/pod-uid: - e7fae040-28fa-4d97-8482-fd0dd12cc921 groups: - system:serviceaccounts - system:serviceaccounts:openshift-authentication-operator - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client uid: 12262619-655c-4aeb-bdde-3e2a9ea13e15 usages: - digital signature - key encipherment - client auth username: system:serviceaccount:openshift-authentication-operator:authentication-operator status: certificate: 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 conditions: - lastTransitionTime: "2026-03-19T09:20:32Z" lastUpdateTime: "2026-03-19T09:20:32Z" message: Auto-approved CSR "system:openshift:openshift-authenticator-ktpm9" reason: AutoApproved status: "True" type: Approved