--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-04-21T07:11:04Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-04-21T07:11:04Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-04-21T07:11:04Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-04-21T07:11:04Z" name: csr-nm5fs resourceVersion: "5520" uid: a63326b2-02e9-4332-b1a8-3da98e1ce29a spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=62fa9f2b42d82bc5abf1b4e3d249a8ac630ac8962f813d8abed4bc5681215b79 groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: LS0tLS1CRUdJTiBDRVJUSUZJQ0FURSBSRVFVRVNULS0tLS0KTUlJQkJqQ0JyQUlCQURCS01SVXdFd1lEVlFRS0V3eHplWE4wWlcwNmJtOWtaWE14TVRBdkJnTlZCQU1US0hONQpjM1JsYlRwdWIyUmxPbWx3TFRFd0xUQXRNVE01TFRFd05DNWxZekl1YVc1MFpYSnVZV3d3V1RBVEJnY3Foa2pPClBRSUJCZ2dxaGtqT1BRTUJCd05DQUFUVTN0TS9PUDBWekRSOVFPc3Y5MEtJanlURmZVemxXbjczaTZPeVZVYjkKcWV6b0ZGY0lDNjZodnAreE9PRmpFWFpqeU5EaUFBS0N5NTFVQUx0THg3M2RvQUF3Q2dZSUtvWkl6ajBFQXdJRApTUUF3UmdJaEFJZnl5MUNhNStoY21QbE81OGdleXR6TmYzUG01cXcxMWRXcXdsNzh1NjE1QWlFQWtDWktZUHBOCmNDOC9UbVdnNDg2Wmp0RFVrNEJ5OUROOFgraXk0WjVZelE0PQotLS0tLUVORCBDRVJUSUZJQ0FURSBSRVFVRVNULS0tLS0K signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: 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 conditions: - lastTransitionTime: "2026-04-21T07:11:04Z" lastUpdateTime: "2026-04-21T07:11:04Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved