--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-06-12T21:06:35Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-06-12T21:06:35Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-06-12T21:06:35Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-06-12T21:06:35Z" name: csr-kqzpb resourceVersion: "6231" uid: ecff74f3-44bf-4588-b6c1-e6a690d2e807 spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=ab33ec54a8b945b630b8c58bde3d26d1f1a2b78b972a4a324c85199adb682497 groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: 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 conditions: - lastTransitionTime: "2026-06-12T21:06:35Z" lastUpdateTime: "2026-06-12T21:06:35Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved