--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-03-13T12:37:38Z" generateName: system:openshift:openshift-authenticator- labels: authentication.openshift.io/csr: openshift-authenticator managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} f:labels: .: {} f:authentication.openshift.io/csr: {} manager: authentication-operator operation: Update time: "2026-03-13T12:37:38Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: authentication-operator operation: Update subresource: approval time: "2026-03-13T12:37:38Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-03-13T12:37:38Z" name: system:openshift:openshift-authenticator-fsshr resourceVersion: "4274" uid: 92687494-0f9e-4b73-80b2-4e9b48bbc797 spec: extra: authentication.kubernetes.io/credential-id: - JTI=a49dee2e-ad85-4e31-9888-8085bdbae5ee authentication.kubernetes.io/node-name: - master-0 authentication.kubernetes.io/node-uid: - c456d6c3-a916-4f05-9928-7e43433a4d22 authentication.kubernetes.io/pod-name: - authentication-operator-7c6989d6c4-tc4ht authentication.kubernetes.io/pod-uid: - d11f8baa-6e8e-4ac0-9b23-1c44efd0ab2a groups: - system:serviceaccounts - system:serviceaccounts:openshift-authentication-operator - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client uid: 093a7257-c169-4ff3-9d78-35ba3c5e8a4c usages: - digital signature - key encipherment - client auth username: system:serviceaccount:openshift-authentication-operator:authentication-operator status: certificate: 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 conditions: - lastTransitionTime: "2026-03-13T12:37:38Z" lastUpdateTime: "2026-03-13T12:37:38Z" message: Auto-approved CSR "system:openshift:openshift-authenticator-fsshr" reason: AutoApproved status: "True" type: Approved