--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-04-17T11:16:15Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-04-17T11:16:15Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-04-17T11:16:15Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-04-17T11:16:15Z" name: csr-pcm52 resourceVersion: "6152" uid: 01a67d00-76ba-4408-9cf7-03d2f7a665bc spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=e8f768b7547958e854aead8cf657ce53003fa5d4a2b47644ce23b85ab4a7ab28 groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: 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 conditions: - lastTransitionTime: "2026-04-17T11:16:15Z" lastUpdateTime: "2026-04-17T11:16:15Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved