--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-05-28T09:31:04Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-05-28T09:31:04Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-05-28T09:31:04Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-05-28T09:31:04Z" name: csr-lddpw resourceVersion: "5322" uid: 921666c3-c70f-427c-94fe-1fd8d544f972 spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=8d47f247f53107829caa7cc0219c57e0374e2882b1f4f9f97db6c51f4d99a1a2 groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: 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 conditions: - lastTransitionTime: "2026-05-28T09:31:04Z" lastUpdateTime: "2026-05-28T09:31:04Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved