--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-06-11T09:00:20Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-06-11T09:00:20Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-06-11T09:00:20Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-06-11T09:00:20Z" name: csr-q65kv resourceVersion: "6130" uid: 738f470b-c7a0-4710-93b6-679071d29201 spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=38dc53714d2fb161d788ddfb74abf39b73994a2dcf82e69122714da2c858cec4 groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: LS0tLS1CRUdJTiBDRVJUSUZJQ0FURSBSRVFVRVNULS0tLS0KTUlJQkJqQ0JyQUlCQURCS01SVXdFd1lEVlFRS0V3eHplWE4wWlcwNmJtOWtaWE14TVRBdkJnTlZCQU1US0hONQpjM1JsYlRwdWIyUmxPbWx3TFRFd0xUQXRNVEk0TFRFMk5pNWxZekl1YVc1MFpYSnVZV3d3V1RBVEJnY3Foa2pPClBRSUJCZ2dxaGtqT1BRTUJCd05DQUFSTElGUTVla3hxUFN1d3lzVXVMOUI4dDFzU2xQUVZCNVZoWG9XOHUvZ1AKQ3RUUGdEVHVVKzcvS0tXbllIOVVWaThMclY3U0plRHBVSVZyQ1UvUm9LaWhvQUF3Q2dZSUtvWkl6ajBFQXdJRApTUUF3UmdJaEFKckxaOFpjOW1ObzlhY1pEc0Rmd3g3Zlpjc1lXRCtlQkdMZndJVWh0b29QQWlFQXpMREtTTmlhClFmT1htbzlGcXNhSTZycmgzcWx3enVmajZQbkQ1ZG5DMUFBPQotLS0tLUVORCBDRVJUSUZJQ0FURSBSRVFVRVNULS0tLS0K signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: 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 conditions: - lastTransitionTime: "2026-06-11T09:00:20Z" lastUpdateTime: "2026-06-11T09:00:20Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved