--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-03-19T11:54:13Z" generateName: system:openshift:openshift-authenticator- labels: authentication.openshift.io/csr: openshift-authenticator managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} f:labels: .: {} f:authentication.openshift.io/csr: {} manager: authentication-operator operation: Update time: "2026-03-19T11:54:13Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: authentication-operator operation: Update subresource: approval time: "2026-03-19T11:54:13Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-03-19T11:54:13Z" name: system:openshift:openshift-authenticator-vzkjr resourceVersion: "4875" uid: f64ff0e0-5335-48d0-a037-cb2d195609c8 spec: extra: authentication.kubernetes.io/credential-id: - JTI=dcb48d0f-0649-4e4a-8980-72be0a11680a authentication.kubernetes.io/node-name: - master-0 authentication.kubernetes.io/node-uid: - 373de10a-46ce-4e45-8f01-601fca4616bc authentication.kubernetes.io/pod-name: - authentication-operator-5885bfd7f4-vt498 authentication.kubernetes.io/pod-uid: - 162b513f-2f67-4946-816b-48f6232dfca0 groups: - system:serviceaccounts - system:serviceaccounts:openshift-authentication-operator - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client uid: 9c3db600-0c2f-4b4e-93af-d846a740b74f usages: - digital signature - key encipherment - client auth username: system:serviceaccount:openshift-authentication-operator:authentication-operator status: certificate: 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 conditions: - lastTransitionTime: "2026-03-19T11:54:13Z" lastUpdateTime: "2026-03-19T11:54:13Z" message: Auto-approved CSR "system:openshift:openshift-authenticator-vzkjr" reason: AutoApproved status: "True" type: Approved