--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-06-15T08:27:40Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-06-15T08:27:40Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-06-15T08:27:40Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-06-15T08:27:40Z" name: csr-8lhf2 resourceVersion: "6199" uid: e93e2e89-9938-41f3-841e-4c2300644ac7 spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=d38943a4911e0060bf4c0b8a6089eb39ccafd478fcf20a02814176a072ba9b17 groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: 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 conditions: - lastTransitionTime: "2026-06-15T08:27:40Z" lastUpdateTime: "2026-06-15T08:27:40Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved