--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-03-12T18:13:47Z" generateName: system:openshift:openshift-authenticator- labels: authentication.openshift.io/csr: openshift-authenticator managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} f:labels: .: {} f:authentication.openshift.io/csr: {} manager: authentication-operator operation: Update time: "2026-03-12T18:13:47Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: authentication-operator operation: Update subresource: approval time: "2026-03-12T18:13:47Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-03-12T18:13:47Z" name: system:openshift:openshift-authenticator-mwx8m resourceVersion: "5982" uid: b97ac41f-6d10-49c6-92f9-c7fe7845e7e1 spec: extra: authentication.kubernetes.io/credential-id: - JTI=31d25fc1-1375-48c4-bdcc-8216b1ebc4e4 authentication.kubernetes.io/node-name: - master-0 authentication.kubernetes.io/node-uid: - 2b794e11-4c79-4c26-ab97-24c47eefd23d authentication.kubernetes.io/pod-name: - authentication-operator-7c6989d6c4-ljw8b authentication.kubernetes.io/pod-uid: - 062f1b21-2ffc-47da-8334-427c3b2a1a90 groups: - system:serviceaccounts - system:serviceaccounts:openshift-authentication-operator - system:authenticated request: LS0tLS1CRUdJTiBDRVJUSUZJQ0FURSBSRVFVRVNULS0tLS0KTUlJQkRUQ0J0QUlCQURCU01WQXdUZ1lEVlFRREUwZHplWE4wWlcwNmMyVnlkbWxqWldGalkyOTFiblE2YjNCbApibk5vYVdaMExXOWhkWFJvTFdGd2FYTmxjblpsY2pwdmNHVnVjMmhwWm5RdFlYVjBhR1Z1ZEdsallYUnZjakJaCk1CTUdCeXFHU000OUFnRUdDQ3FHU000OUF3RUhBMElBQkFEenB1ZkxmSFVObEZWb2VTZkEzYmFYRVlFN3Z0QmkKeUphbDdITi9STTJ2UGNvTTJUSm1nZmRGTVdYbXVycGIvMDBiczVkY3FFdVNBVWhqSzdBdDFFQ2dBREFLQmdncQpoa2pPUFFRREFnTklBREJGQWlBdFMwWk9rZU05c3FvMjRFODNYUVBEdDRUVGZvYjRMWExCeEJRNisxeFRWQUloCkFNVVdjUGs4ZDN5TXRrN3g2eW5XWklBc1pDdXQvVDNtWlZOa09HL1Z1ZC92Ci0tLS0tRU5EIENFUlRJRklDQVRFIFJFUVVFU1QtLS0tLQo= signerName: kubernetes.io/kube-apiserver-client uid: 0093c01a-5058-466e-aef4-52deb21fabc4 usages: - digital signature - key encipherment - client auth username: system:serviceaccount:openshift-authentication-operator:authentication-operator status: certificate: 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 conditions: - lastTransitionTime: "2026-03-12T18:13:47Z" lastUpdateTime: "2026-03-12T18:13:47Z" message: Auto-approved CSR "system:openshift:openshift-authenticator-mwx8m" reason: AutoApproved status: "True" type: Approved