--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-06-03T22:24:34Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-06-03T22:24:34Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-06-03T22:24:34Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-06-03T22:24:34Z" name: csr-nthwg resourceVersion: "6048" uid: 94e50fdb-8878-47ec-8d93-81d66c57bd4d spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=ad8acc5aea6a20558beb1b985b80cfe13830805ff6dbdeebff30768179f398ba groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: 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 conditions: - lastTransitionTime: "2026-06-03T22:24:34Z" lastUpdateTime: "2026-06-03T22:24:34Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved