--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-06-12T17:34:22Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-06-12T17:34:22Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-06-12T17:34:22Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-06-12T17:34:22Z" name: csr-d4kdb resourceVersion: "6511" uid: 25a2d866-b913-4d94-8027-659dcf44c056 spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=aaab69ecdd34d6e50293d599df36353bfe4628aa88f2a653f3dcbf21cc20c862 groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: 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 conditions: - lastTransitionTime: "2026-06-12T17:34:22Z" lastUpdateTime: "2026-06-12T17:34:22Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved