--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-05-26T15:17:41Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-05-26T15:17:41Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-05-26T15:17:41Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-05-26T15:17:41Z" name: csr-cnfcd resourceVersion: "5467" uid: aad4fe37-49f1-4ef8-b64e-709c48c83755 spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=c197ccb7f80024bf7cf1693828170b629e2de08adbf8eedb93cd54e7ee82e0b7 groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: LS0tLS1CRUdJTiBDRVJUSUZJQ0FURS0tLS0tCk1JSUN2RENDQWFTZ0F3SUJBZ0lSQUw2OUNMT2tmMk1VQWZpa1dFY3hHb2d3RFFZSktvWklodmNOQVFFTEJRQXcKTGpFU01CQUdBMVVFQ3hNSmIzQmxibk5vYVdaME1SZ3dGZ1lEVlFRREV3OXJkV0psTFdOemNpMXphV2R1WlhJdwpIaGNOTWpZd05USTJNVFV4TWpReFdoY05Namd3TlRJMU1UVXhNalF4V2pCS01SVXdFd1lEVlFRS0V3eHplWE4wClpXMDZibTlrWlhNeE1UQXZCZ05WQkFNVEtITjVjM1JsYlRwdWIyUmxPbWx3TFRFd0xUQXRNVFF3TFRFMk5DNWwKWXpJdWFXNTBaWEp1WVd3d1dUQVRCZ2NxaGtqT1BRSUJCZ2dxaGtqT1BRTUJCd05DQUFSMzJxZW5KTHVrUG9zdQpNbzg0VEQ5RUFieW5lWmdwNGIwS1g4ZFJ0NCtzZy9GSVNpYnp6cUc5RHJjaDZ6SGxjRW4rZ0pjeURUWFROK01kCmdMNmcvdW9tbzRHRE1JR0FNQTRHQTFVZER3RUIvd1FFQXdJSGdEQVRCZ05WSFNVRUREQUtCZ2dyQmdFRkJRY0QKQWpBTUJnTlZIUk1CQWY4RUFqQUFNRXNHQTFVZEl3UkVNRUtBUU51UTJ4THVObmFqdVJFOVQwRUhQT1JSblcrcQpQbURoeVRCQ292ZDRQaGtZTzNGT2kzVWZxNW1MTXJBbUtPamsxcTkvN3pKWFF3c25rTVNscmYrV1FkUXdEUVlKCktvWklodmNOQVFFTEJRQURnZ0VCQUpOL2VLWlZiYnVMNDhPN1hpRFQreVg4MTZ1UFRjZG5lRTFaMkRvSVhjdWMKTUl3RWxWQ1Y4UkZDeG5DUEcvVDBtZ3FsblpqMVRxOVRoZDZPM1RrOEgzbElWc3ZoTGdURkhDK3ZvaG1EWndRTQpXNElEcEdSQWYwMGlUbVFodU5JQyszL1d6SFpkRloyK2MxZ3NaZzhUQVlsNTQyMVJCakFlU1NiMU5PQ3NaQWFXCmlCV0o0azJRUWxnNDBzaEtMSCsySkpQdytNZ2gxdTk4MHc5ZDk2U0ZjaHJnL0ZtK1p2ZjNtNXJYNjN3RHlCTS8KYldxRFM4Q1RnbXluY3FVZ2JzWlA0RGdUR2s3NmFtTFI3TW1UMkI3RThBd3dOeWRXY1ZxQzdBMkpxNFgydm5WMAp6KytNSW9aTnJDWFVMU3JxamdDeFBwamVPOG9Gd3I3UFpVYzhNSWhrTDM4PQotLS0tLUVORCBDRVJUSUZJQ0FURS0tLS0tCg== conditions: - lastTransitionTime: "2026-05-26T15:17:41Z" lastUpdateTime: "2026-05-26T15:17:41Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved