--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-06-09T20:54:18Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-06-09T20:54:18Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-06-09T20:54:18Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-06-09T20:54:18Z" name: csr-5n78w resourceVersion: "6213" uid: 522632fa-60a9-4294-b3ff-cc0585341f02 spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=5edfb8e9efc7bd9edea199ec5e89edd5400d971d7f96c3afce569ebcb3c488fa groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: LS0tLS1CRUdJTiBDRVJUSUZJQ0FURSBSRVFVRVNULS0tLS0KTUlJQkJEQ0Jxd0lCQURCSk1SVXdFd1lEVlFRS0V3eHplWE4wWlcwNmJtOWtaWE14TURBdUJnTlZCQU1USjNONQpjM1JsYlRwdWIyUmxPbWx3TFRFd0xUQXRNVE13TFRjM0xtVmpNaTVwYm5SbGNtNWhiREJaTUJNR0J5cUdTTTQ5CkFnRUdDQ3FHU000OUF3RUhBMElBQkxaR1FvUWVYaS9jeFJzcHNmaWwzSmZoZzJjWFNqc2dVR1NHMXNhNHNiQzUKV2ptTkFzaWU1Rnc0ZWE2MERrSXpleTNaaVhxV2pXUkQvbVdleVBHbXU2MmdBREFLQmdncWhrak9QUVFEQWdOSQpBREJGQWlFQTZya3Y4MzNHS3MxaUxpUmhaSDh2KzhPL1lyMzVnWnhZQlBQc21iSlJ0SVFDSUFMdXA4cHJ2dmJMCnFzQnNFM0kzUjdOQVBLS05MSVVzd0xiOUprc3NzU2dJCi0tLS0tRU5EIENFUlRJRklDQVRFIFJFUVVFU1QtLS0tLQo= signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: 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 conditions: - lastTransitionTime: "2026-06-09T20:54:18Z" lastUpdateTime: "2026-06-09T20:54:18Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved