--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-03-12T12:21:31Z" generateName: system:openshift:openshift-authenticator- labels: authentication.openshift.io/csr: openshift-authenticator managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} f:labels: .: {} f:authentication.openshift.io/csr: {} manager: authentication-operator operation: Update time: "2026-03-12T12:21:31Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: authentication-operator operation: Update subresource: approval time: "2026-03-12T12:21:31Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-03-12T12:21:31Z" name: system:openshift:openshift-authenticator-cblcp resourceVersion: "4313" uid: 456bdb7d-0a95-4b89-a183-54dd4d3b1bad spec: extra: authentication.kubernetes.io/credential-id: - JTI=6bc69142-37c6-4ae8-970b-ebc74abfa215 authentication.kubernetes.io/node-name: - master-0 authentication.kubernetes.io/node-uid: - e2370ef4-aa49-40ce-994d-bc2226459c83 authentication.kubernetes.io/pod-name: - authentication-operator-7c6989d6c4-98xjv authentication.kubernetes.io/pod-uid: - a346ac54-02fe-417f-a49d-038e45b13a1d groups: - system:serviceaccounts - system:serviceaccounts:openshift-authentication-operator - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client uid: c84ecdab-78d8-44b3-99d9-c223c4fd0943 usages: - digital signature - key encipherment - client auth username: system:serviceaccount:openshift-authentication-operator:authentication-operator status: certificate: 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 conditions: - lastTransitionTime: "2026-03-12T12:21:31Z" lastUpdateTime: "2026-03-12T12:21:31Z" message: Auto-approved CSR "system:openshift:openshift-authenticator-cblcp" reason: AutoApproved status: "True" type: Approved