--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-05-28T16:00:01Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-05-28T16:00:01Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-05-28T16:00:01Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-05-28T16:00:01Z" name: csr-vkf5b resourceVersion: "6303" uid: dc16a632-2a35-457a-ac66-226e101e29d5 spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=0355063c44d49187ee3afeb4d88bf58aff9f9d7ebdcdaac36ee6921d355f0d91 groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: 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 conditions: - lastTransitionTime: "2026-05-28T16:00:01Z" lastUpdateTime: "2026-05-28T16:00:01Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved