--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-03-19T09:18:52Z" generateName: system:openshift:openshift-authenticator- labels: authentication.openshift.io/csr: openshift-authenticator managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} f:labels: .: {} f:authentication.openshift.io/csr: {} manager: authentication-operator operation: Update time: "2026-03-19T09:18:52Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: authentication-operator operation: Update subresource: approval time: "2026-03-19T09:18:52Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-03-19T09:18:53Z" name: system:openshift:openshift-authenticator-bs6m4 resourceVersion: "5605" uid: abba7fc8-8968-441f-b469-5fb06c73e4a2 spec: extra: authentication.kubernetes.io/credential-id: - JTI=7ff943df-1639-44d3-a626-8210a0f61394 authentication.kubernetes.io/node-name: - master-0 authentication.kubernetes.io/node-uid: - 835b0140-093e-4eb9-96de-413b5cb01cc4 authentication.kubernetes.io/pod-name: - authentication-operator-5885bfd7f4-z9khh authentication.kubernetes.io/pod-uid: - fe1881fb-c670-442a-a092-c1eee6b7d5e5 groups: - system:serviceaccounts - system:serviceaccounts:openshift-authentication-operator - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client uid: 0e3f69b1-aafd-47d8-9cfc-ffc55b6bd04e usages: - digital signature - key encipherment - client auth username: system:serviceaccount:openshift-authentication-operator:authentication-operator status: certificate: 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 conditions: - lastTransitionTime: "2026-03-19T09:18:52Z" lastUpdateTime: "2026-03-19T09:18:52Z" message: Auto-approved CSR "system:openshift:openshift-authenticator-bs6m4" reason: AutoApproved status: "True" type: Approved