--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-06-03T09:43:06Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-06-03T09:43:06Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-06-03T09:43:06Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-06-03T09:43:06Z" name: csr-k7ct4 resourceVersion: "5981" uid: 685e1447-3398-4757-b808-9e76d52d8506 spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=8edb8ccef6ba6c70a25224381f591b92f86866a97342d32fa7d3e60001930178 groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: LS0tLS1CRUdJTiBDRVJUSUZJQ0FURS0tLS0tCk1JSUN2RENDQWFTZ0F3SUJBZ0lSQU9tcUp5cEZaZnR4QnVhSU54YTByTFl3RFFZSktvWklodmNOQVFFTEJRQXcKTGpFU01CQUdBMVVFQ3hNSmIzQmxibk5vYVdaME1SZ3dGZ1lEVlFRREV3OXJkV0psTFdOemNpMXphV2R1WlhJdwpIaGNOTWpZd05qQXpNRGt6T0RBMldoY05Namd3TmpBeU1Ea3pPREEyV2pCS01SVXdFd1lEVlFRS0V3eHplWE4wClpXMDZibTlrWlhNeE1UQXZCZ05WQkFNVEtITjVjM1JsYlRwdWIyUmxPbWx3TFRFd0xUQXRNVE0xTFRFM01TNWwKWXpJdWFXNTBaWEp1WVd3d1dUQVRCZ2NxaGtqT1BRSUJCZ2dxaGtqT1BRTUJCd05DQUFUVEFXNytCckhpa3hRKwpsTXk1c0pQRUh3Uk1zM0RyODEwZGU4UDlKQ1MwMXE1K2lkTTAvZmZvQjc2a0RjMU5vTWxFZks5UnR4NGsyODNICk9RL0pOWHk1bzRHRE1JR0FNQTRHQTFVZER3RUIvd1FFQXdJSGdEQVRCZ05WSFNVRUREQUtCZ2dyQmdFRkJRY0QKQWpBTUJnTlZIUk1CQWY4RUFqQUFNRXNHQTFVZEl3UkVNRUtBUUVIQ0p5SWs2REZSQkFYbTFEQ1B0VlozTVEzSQplaHdWc2VuKzBHa0ZKdzNxY3c0OTBGeENZZFFKNkxGb3hiT3lmRmJ1ZGYzMWtnWVBUdzlITUNzaGt2TXdEUVlKCktvWklodmNOQVFFTEJRQURnZ0VCQUhjUzlSUkY1bWRkakxjTVp5RU5DNHpyTWdqM2tQdFl5SEwyOTRaRkxQU2QKcHJQeTBDRHBuQis5QStHOGtvWGJ2SUhpT2wxdGFacnRwTFg5Y1JKL3RzZHpXSU41MGMrV0ZWd04xS3VKYkY5WQpGeHVhSWlpSnVQMTFiTW1PUmtxMk1pM1dVRlZiVzZTTUtZd1EwRnZ1b2oraHB3NXo3dlNwd3VTamMwZXdGaE5TCmFZR1lsUnIvMWxobzZTRVV0bDI2WDMwY0Z0S1NVajJoa3UyWUFpMDhDbGR5cDF3aGVEeHZWT0RRd2ZhbjI4SkkKZ3BPYzZMaWJwYWozWEE3dXAzdnhMaU1oVkIwSHFRK3BLdzZ6QkFiS0xCV3cwM3kxdDh0b043WlpveWk3QzZ6dgpvNUVFK1VQT0xPc21tOTZjaVUrYXdIcjdycDNqNXk5OWdTNWtTSUxrMXJvPQotLS0tLUVORCBDRVJUSUZJQ0FURS0tLS0tCg== conditions: - lastTransitionTime: "2026-06-03T09:43:06Z" lastUpdateTime: "2026-06-03T09:43:06Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved