--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-06-09T16:08:59Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-06-09T16:08:59Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-06-09T16:08:59Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-06-09T16:08:59Z" name: csr-wffg8 resourceVersion: "6434" uid: 6c867d4d-f3b8-4b4f-9bcc-1266c8800aca spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=e952ee698f557a1a406b6386eff37f499d3e4e95c0204827e7fc443a89c43abe groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: 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 conditions: - lastTransitionTime: "2026-06-09T16:08:59Z" lastUpdateTime: "2026-06-09T16:08:59Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved