--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-03-18T13:08:12Z" generateName: system:openshift:openshift-authenticator- labels: authentication.openshift.io/csr: openshift-authenticator managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} f:labels: .: {} f:authentication.openshift.io/csr: {} manager: authentication-operator operation: Update time: "2026-03-18T13:08:12Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: authentication-operator operation: Update subresource: approval time: "2026-03-18T13:08:12Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-03-18T13:08:12Z" name: system:openshift:openshift-authenticator-p4gfr resourceVersion: "3919" uid: 934d192f-1638-4cd1-b010-3a29eb69a0c9 spec: extra: authentication.kubernetes.io/credential-id: - JTI=9c95880c-7deb-41db-b56b-ad3444dee60d authentication.kubernetes.io/node-name: - master-0 authentication.kubernetes.io/node-uid: - 91c86903-c481-4337-816d-5d4395974319 authentication.kubernetes.io/pod-name: - authentication-operator-5885bfd7f4-mqh5c authentication.kubernetes.io/pod-uid: - 8ce8e99d-7b02-4bf4-a438-adde851918cb groups: - system:serviceaccounts - system:serviceaccounts:openshift-authentication-operator - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client uid: b72a4535-37e2-4477-a7eb-99f617d4db6e usages: - digital signature - key encipherment - client auth username: system:serviceaccount:openshift-authentication-operator:authentication-operator status: certificate: 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 conditions: - lastTransitionTime: "2026-03-18T13:08:12Z" lastUpdateTime: "2026-03-18T13:08:12Z" message: Auto-approved CSR "system:openshift:openshift-authenticator-p4gfr" reason: AutoApproved status: "True" type: Approved