--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-06-09T14:51:42Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-06-09T14:51:42Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-06-09T14:51:42Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-06-09T14:51:42Z" name: csr-lxpxm resourceVersion: "6722" uid: 1cbb6f87-e9bd-451f-a444-297ab1e45e9f spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=a517da1d004c7bc926184056abdc7ccc7f89405773372c3cd0095550c82d528a groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: LS0tLS1CRUdJTiBDRVJUSUZJQ0FURS0tLS0tCk1JSUN1akNDQWFLZ0F3SUJBZ0lRV3l4TFYxR1F0VDZ0OFErc3lpbFNxVEFOQmdrcWhraUc5dzBCQVFzRkFEQXUKTVJJd0VBWURWUVFMRXdsdmNHVnVjMmhwWm5ReEdEQVdCZ05WQkFNVEQydDFZbVV0WTNOeUxYTnBaMjVsY2pBZQpGdzB5TmpBMk1Ea3hORFEyTkRKYUZ3MHlPREEyTURneE5EUTJOREphTUVreEZUQVRCZ05WQkFvVERITjVjM1JsCmJUcHViMlJsY3pFd01DNEdBMVVFQXhNbmMzbHpkR1Z0T201dlpHVTZhWEF0TVRBdE1DMHhNell0TnpZdVpXTXkKTG1sdWRHVnlibUZzTUZrd0V3WUhLb1pJemowQ0FRWUlLb1pJemowREFRY0RRZ0FFYkxHVDdhVEs4UDRlK1hGZgpZRzNsa3ZaMlZvWUMyWVlGRkREc05KZ3MrUVNOZ3lVT1djaHZZNTNyN3B1NTRFbUovdG5EaThhWTFrWnNrUDNICjRXQmN4YU9CZ3pDQmdEQU9CZ05WSFE4QkFmOEVCQU1DQjRBd0V3WURWUjBsQkF3d0NnWUlLd1lCQlFVSEF3SXcKREFZRFZSMFRBUUgvQkFJd0FEQkxCZ05WSFNNRVJEQkNnRUJ6aks0R0FySHVBdktMb0V2K0t2OW5qeXZtNGszTgozdzhnQXRPT2RYdXB5cjhUQ214bFVGOFNOSDlnSlFJbTMyY1VVMlRyeHlyZDBTcS9OZUR3UWxBQk1BMEdDU3FHClNJYjNEUUVCQ3dVQUE0SUJBUUJ3Rko1Zk1EdUJBdXRIb1BqWUN2MWtkZGwxaFA1amYrTGU0VlFoVUpKMlk1QzkKSmpjRkk3MnhNMkJhek1KcGhuOVQ0U0pocElhTHk3K3BDbVJ4am02aWE4amp2TlpzVWs4czRlTXFCamlsdWtHSAo5bTNWclRSMkRhODM3eURuNWwyaHdvelpuZGpKbGp0dmRyLzJHUTBCclBRbXJFejNrNTk0WTFYa3Q0NnBXL01xCnpGNGNldjRJcGxTU2dCemJjQmlOcW5MdmF5TWVMejBuUmtTMkxtNWY2OEIwWW5hbE8zYVlXK1dPT1BEM0x4N2UKOXk1ZkJvdnVtRXhINDMxSFlQM0JyU3BlZ0lrSGlDbG9uNWdNL3RkNEx4U0xHMUs1bzZmVUo2eGxnYzd1REhVUAp5MnExcWpCUGFWaWJ1aHBOcFpaaHlyNnhRK0gzQkxrWnV5eGFTRDB6Ci0tLS0tRU5EIENFUlRJRklDQVRFLS0tLS0K conditions: - lastTransitionTime: "2026-06-09T14:51:42Z" lastUpdateTime: "2026-06-09T14:51:42Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved