--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-04-21T07:11:14Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-04-21T07:11:14Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-04-21T07:11:14Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-04-21T07:11:14Z" name: csr-w7s62 resourceVersion: "5833" uid: 06bd28a8-4b44-40e9-8dbd-d930b77e9359 spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=62fa9f2b42d82bc5abf1b4e3d249a8ac630ac8962f813d8abed4bc5681215b79 groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: LS0tLS1CRUdJTiBDRVJUSUZJQ0FURS0tLS0tCk1JSUN2RENDQWFTZ0F3SUJBZ0lSQU1CYVJ1MEc0VG5iekVZZmxkQjJzYll3RFFZSktvWklodmNOQVFFTEJRQXcKTGpFU01CQUdBMVVFQ3hNSmIzQmxibk5vYVdaME1SZ3dGZ1lEVlFRREV3OXJkV0psTFdOemNpMXphV2R1WlhJdwpIaGNOTWpZd05ESXhNRGN3TmpFMFdoY05Namd3TkRJd01EY3dOakUwV2pCS01SVXdFd1lEVlFRS0V3eHplWE4wClpXMDZibTlrWlhNeE1UQXZCZ05WQkFNVEtITjVjM1JsYlRwdWIyUmxPbWx3TFRFd0xUQXRNVE0yTFRJME5TNWwKWXpJdWFXNTBaWEp1WVd3d1dUQVRCZ2NxaGtqT1BRSUJCZ2dxaGtqT1BRTUJCd05DQUFRRDVYSXpEdEFmcXYxdwpFTFoxNG1YUHd5Q1hmTUxDT0ZGUGFhYXJBeUtPdW85d0JDaWpXSkRHRFRWVElKME5iTUowd0lZY3V6RXhjMTZUCi8rMEhhVHZibzRHRE1JR0FNQTRHQTFVZER3RUIvd1FFQXdJSGdEQVRCZ05WSFNVRUREQUtCZ2dyQmdFRkJRY0QKQWpBTUJnTlZIUk1CQWY4RUFqQUFNRXNHQTFVZEl3UkVNRUtBUU5Wa1J0ZU5OMlhrWDZIZDc1clRDQXE1MGxScgp3bFArY3k1cExkZUpDdjI5MWFFa3l6bHYrUXNJS2pXQUVscDU5MW1oekJLaVRPamZIN0I5YzRNdXNwRXdEUVlKCktvWklodmNOQVFFTEJRQURnZ0VCQUI0KzMwSWNqWW1zN1luYVJnbFMrQ2I5dVZOTlMydzhMQVhEZ3U5VUtwVWQKd1d6cWhKdHVNdjI2ZEdIT3R1cHE3Q3VOQTljaEdRT0ZUYzJ5eU82M0thQmc1M0tJMm5mWTdIeU4rSTVrbjNFRgpzdy9UOGFlNXZ5ekV1SEJ4YTVLc2NsMU1mU1plZjhuc3JCbjNOV2ZRQ1draDIrV2pnYVBESnBvZ0tGdjdHTEZwClFxWDBhbXgyMVV5d3l6NGJQRG1BWlV0SENtM0tBZ1VZQVdBQmdXQURSbmtUbDNkT20waU43M3RieHFHdjZ6TjUKYWJ3MXJzNW1LUzltMGRITU15SCtZMllQSE11TzBXN2gra05iV1lFdFVVdGhJMlJEOHlBQWRKZGUwa0dDMk9yUQpIZFNVOEkzRXNUOVFpckdlVjE5NmEzZ2wzMjNZSWc4NGMwU0c0SnVyVHNFPQotLS0tLUVORCBDRVJUSUZJQ0FURS0tLS0tCg== conditions: - lastTransitionTime: "2026-04-21T07:11:14Z" lastUpdateTime: "2026-04-21T07:11:14Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved