--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-03-13T10:35:57Z" generateName: system:openshift:openshift-authenticator- labels: authentication.openshift.io/csr: openshift-authenticator managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} f:labels: .: {} f:authentication.openshift.io/csr: {} manager: authentication-operator operation: Update time: "2026-03-13T10:35:57Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: authentication-operator operation: Update subresource: approval time: "2026-03-13T10:35:57Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-03-13T10:35:57Z" name: system:openshift:openshift-authenticator-bqnh2 resourceVersion: "4490" uid: 37db7efa-348b-4661-9b5f-51b47d7d8104 spec: extra: authentication.kubernetes.io/credential-id: - JTI=098f59f3-c51d-4a8d-8fdc-c9c47b9f0d15 authentication.kubernetes.io/node-name: - master-0 authentication.kubernetes.io/node-uid: - cb006092-fd40-4d71-84fb-f3ba8c313f97 authentication.kubernetes.io/pod-name: - authentication-operator-7c6989d6c4-cwlxw authentication.kubernetes.io/pod-uid: - 1434c4a2-5c4d-478a-a16a-7d6a52ea3099 groups: - system:serviceaccounts - system:serviceaccounts:openshift-authentication-operator - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client uid: 89c35042-c0e6-4710-af93-a0496d65b871 usages: - digital signature - key encipherment - client auth username: system:serviceaccount:openshift-authentication-operator:authentication-operator status: certificate: LS0tLS1CRUdJTiBDRVJUSUZJQ0FURS0tLS0tCk1JSUNsRENDQVh5Z0F3SUJBZ0lRZHRTOCtydE9JVmNrTjRxTVRFQWpwREFOQmdrcWhraUc5dzBCQVFzRkFEQXQKTVJJd0VBWURWUVFMRXdsdmNHVnVjMmhwWm5ReEZ6QVZCZ05WQkFNVERtdDFZbVZzWlhRdGMybG5ibVZ5TUI0WApEVEkyTURNeE16RXdNekExTjFvWERUSTJNRE14TkRFd01qUXhPVm93VWpGUU1FNEdBMVVFQXhOSGMzbHpkR1Z0Ck9uTmxjblpwWTJWaFkyTnZkVzUwT205d1pXNXphR2xtZEMxdllYVjBhQzFoY0dselpYSjJaWEk2YjNCbGJuTm8KYVdaMExXRjFkR2hsYm5ScFkyRjBiM0l3V1RBVEJnY3Foa2pPUFFJQkJnZ3Foa2pPUFFNQkJ3TkNBQVR5cjVMYgpTOHVaMzhRdTFuUWsvTjVkV3Z5UzJlL3RjMXlNWGtUMHpRMDZjaVJsalVrejdDcmRjd0x6SWNnYVk1NHNiRDN4CngyUU1xS3ROQWkvQnhTK1JvMVl3VkRBT0JnTlZIUThCQWY4RUJBTUNCYUF3RXdZRFZSMGxCQXd3Q2dZSUt3WUIKQlFVSEF3SXdEQVlEVlIwVEFRSC9CQUl3QURBZkJnTlZIU01FR0RBV2dCVDVNbmFRVys1SndaMUZiS1BOdXdkYwpFblNLeXpBTkJna3Foa2lHOXcwQkFRc0ZBQU9DQVFFQWJ2Vnc4VkhSMzFhNFo3U1F1czRKM09zZkVNOGxrTDJGCjFvZkl0RHdKalQrZ29IQy9tZzREaU01dENnYjhwMGR6dUtqZTluWEN4d01NWkg5NUFvTXdiby9qRXpCNGllZ0QKYUtFejRDQ05CY0R6cytKQjZiUTQvUi9aa3UzTnJmZWRkWitGa21lVE8xVWc5ejhtZzN5cjFBRStPMXkzTEtRbgplb1MvUit1TStmUEtPT1R2SGRaOHh1YTJ4ZW5DclpDSEpOd1I0dW0vZUZnWjVncTFoeUVaODFpQ3hLZHBuTHpLCmN2VnArUHpDSHhySjV0M1pXMnlnR0FTMktiVnkybU5wQXBIMTRCK082VWhTTDI1Ujlac3dkS0pZYXFEbUM0dkUKSktZMElzRFZmcVR0bUlHTmFQTjlJak81ZFJKUHAySTFRWEZKWXF5S1NSdFZUN3dPcjN0Vm9nPT0KLS0tLS1FTkQgQ0VSVElGSUNBVEUtLS0tLQo= conditions: - lastTransitionTime: "2026-03-13T10:35:57Z" lastUpdateTime: "2026-03-13T10:35:57Z" message: Auto-approved CSR "system:openshift:openshift-authenticator-bqnh2" reason: AutoApproved status: "True" type: Approved