--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-05-29T17:31:51Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-05-29T17:31:51Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-05-29T17:31:51Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-05-29T17:31:51Z" name: csr-tg65q resourceVersion: "5633" uid: c4ac88e4-ef5b-40e0-bfbf-677f199f3bae spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=6926f36c9a286c56248ee535e39b89d8e81fd538c3374617fee5156495c7568b groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: LS0tLS1CRUdJTiBDRVJUSUZJQ0FURSBSRVFVRVNULS0tLS0KTUlJQkJUQ0JyQUlCQURCS01SVXdFd1lEVlFRS0V3eHplWE4wWlcwNmJtOWtaWE14TVRBdkJnTlZCQU1US0hONQpjM1JsYlRwdWIyUmxPbWx3TFRFd0xUQXRNVE0zTFRFeU15NWxZekl1YVc1MFpYSnVZV3d3V1RBVEJnY3Foa2pPClBRSUJCZ2dxaGtqT1BRTUJCd05DQUFSQ3V2dXNmTnhKTUo0dkM1NU5kaTZNbnRxbSsyN0VUNnVoeU56OFZEUGIKM2huTUkwdGVNT1VMdkZ1OWw5VisxdUNidmpXSkRsbDErYUdaSkhCYmw4c2dvQUF3Q2dZSUtvWkl6ajBFQXdJRApTQUF3UlFJaEFKaEVXZVpReTd2S1puK1VDdTMrcUdvekNOOEViVllyR3FVMnJ6YWYxbGlTQWlBUFEreWZjd1JxCklDdjBKWUJmLzdVS0pUdExVcG5PcnBLQ0JaNkhjL2N6cGc9PQotLS0tLUVORCBDRVJUSUZJQ0FURSBSRVFVRVNULS0tLS0K signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: LS0tLS1CRUdJTiBDRVJUSUZJQ0FURS0tLS0tCk1JSUN1ekNDQWFPZ0F3SUJBZ0lRY3d5Ly9zWWVCcXZmdlhUSFgxUC9JVEFOQmdrcWhraUc5dzBCQVFzRkFEQXUKTVJJd0VBWURWUVFMRXdsdmNHVnVjMmhwWm5ReEdEQVdCZ05WQkFNVEQydDFZbVV0WTNOeUxYTnBaMjVsY2pBZQpGdzB5TmpBMU1qa3hOekkyTlRGYUZ3MHlPREExTWpneE56STJOVEZhTUVveEZUQVRCZ05WQkFvVERITjVjM1JsCmJUcHViMlJsY3pFeE1DOEdBMVVFQXhNb2MzbHpkR1Z0T201dlpHVTZhWEF0TVRBdE1DMHhNemN0TVRJekxtVmoKTWk1cGJuUmxjbTVoYkRCWk1CTUdCeXFHU000OUFnRUdDQ3FHU000OUF3RUhBMElBQkVLNis2eDgzRWt3bmk4TApuazEyTG95ZTJxYjdic1JQcTZISTNQeFVNOXZlR2N3alMxNHc1UXU4VzcyWDFYN1c0SnUrTllrT1dYWDVvWmtrCmNGdVh5eUNqZ1lNd2dZQXdEZ1lEVlIwUEFRSC9CQVFEQWdlQU1CTUdBMVVkSlFRTU1Bb0dDQ3NHQVFVRkJ3TUMKTUF3R0ExVWRFd0VCL3dRQ01BQXdTd1lEVlIwakJFUXdRb0JBeVVGZ2NQOVNiNVVtT2Y1Q2xPOW9mU3gyTXBRVApYcXNZbm5oc0ZrbnBCL01LdHZmNDRuNHBDeDBEangzTnVvSDJWdUg5d1JHRjhBYXFqZHFuUy8rTzdUQU5CZ2txCmhraUc5dzBCQVFzRkFBT0NBUUVBc2JFb2RBRWhIS3c0QTJLL1ZsTnJ0aHVnUFo0SDBidk1wVU1FcTdTWngwd3YKUWQ2V3BTV2Z0TEtJU3N0WURBMDVyeXYvRGs3N2ZNdzVDQjZQOXJ3OGRIMEhHMEt1R0NxbUJzL0FuQmEyaEU5RwpQQVBvc3VsUklvMUlSK1p6TmNZMGVMSm9ubldyR3pnOXQvRGhNQ2VXenpwdWVlWmVOdTl5NVVRTGFESEhYb1Y0Ckx0NTdtZy8veVdWRWZYMjEzeWdjYjRoZGdDWDRETmxETjV3Mi9HRVJZV2V3NGN3UVo0RGNlcFlSbFlyUnNLamsKcncxd2VIZFpEeE9rU2liUFlIcVJOUUNrdUtza3BUVDkvSjkxYVRjWmlUUnk0amI5cDRRYzIxK3kvRzRyNExxNgo0MmtyWXpFaUlDYjVkVnJ3NDZTY2pOMHZ4N1MyK2F2SE5NbTA0TWJtanc9PQotLS0tLUVORCBDRVJUSUZJQ0FURS0tLS0tCg== conditions: - lastTransitionTime: "2026-05-29T17:31:51Z" lastUpdateTime: "2026-05-29T17:31:51Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved