--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-03-08T03:11:12Z" generateName: system:openshift:openshift-authenticator- labels: authentication.openshift.io/csr: openshift-authenticator managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} f:labels: .: {} f:authentication.openshift.io/csr: {} manager: authentication-operator operation: Update time: "2026-03-08T03:11:12Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: authentication-operator operation: Update subresource: approval time: "2026-03-08T03:11:12Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-03-08T03:11:12Z" name: system:openshift:openshift-authenticator-xmztk resourceVersion: "4954" uid: 2ac98761-d816-4210-8b26-0b9a3b2fa6a6 spec: extra: authentication.kubernetes.io/credential-id: - JTI=c5d0ba0a-b672-41ad-b2b7-2752a9b9ebbd authentication.kubernetes.io/node-name: - master-0 authentication.kubernetes.io/node-uid: - e5825447-c87e-453a-9919-ced1c52a404c authentication.kubernetes.io/pod-name: - authentication-operator-7c6989d6c4-k8xgg authentication.kubernetes.io/pod-uid: - 90ef7c0a-7c6f-45aa-865d-1e247110b265 groups: - system:serviceaccounts - system:serviceaccounts:openshift-authentication-operator - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client uid: 512a12f0-a035-4892-8382-a4d6a401010e usages: - digital signature - key encipherment - client auth username: system:serviceaccount:openshift-authentication-operator:authentication-operator status: certificate: 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 conditions: - lastTransitionTime: "2026-03-08T03:11:12Z" lastUpdateTime: "2026-03-08T03:11:12Z" message: Auto-approved CSR "system:openshift:openshift-authenticator-xmztk" reason: AutoApproved status: "True" type: Approved