--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-06-06T05:08:59Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-06-06T05:08:59Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-06-06T05:08:59Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-06-06T05:08:59Z" name: csr-qmpkz resourceVersion: "6489" uid: fd405dd6-bbb0-4a54-a886-0693a0faa2c0 spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=27480c85ecce38bfde2d2218dd9101d17f8436647cc3803c831ce029416b1829 groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: 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 conditions: - lastTransitionTime: "2026-06-06T05:08:59Z" lastUpdateTime: "2026-06-06T05:08:59Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved