--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-03-18T16:44:19Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-03-18T16:44:19Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-03-18T16:44:19Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-03-18T16:44:19Z" name: csr-f95xw resourceVersion: "5801" uid: 9218e4b0-32c7-461b-b370-2335e57b66d6 spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=7d61ea901512e2ea3ed3ff8dd6fd95d3574bd49d591d1d96ed5095a808c175b5 groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: LS0tLS1CRUdJTiBDRVJUSUZJQ0FURSBSRVFVRVNULS0tLS0KTUlJQkJEQ0Jxd0lCQURCSk1SVXdFd1lEVlFRS0V3eHplWE4wWlcwNmJtOWtaWE14TURBdUJnTlZCQU1USjNONQpjM1JsYlRwdWIyUmxPbWx3TFRFd0xUQXRNVE01TFRRekxtVmpNaTVwYm5SbGNtNWhiREJaTUJNR0J5cUdTTTQ5CkFnRUdDQ3FHU000OUF3RUhBMElBQkhvMUU3UDFMWnVaR3k0Ly9WamVCcEdMUmpWdGNyUFRtODNEajFGbjJXM1QKWHR1RVhldEJMUHhIRDFGNHczUEtubUZQdSthTXZpYTBYZENLdFBXUEVSK2dBREFLQmdncWhrak9QUVFEQWdOSQpBREJGQWlCazdlWFFqWmdFVHlrS3VPb2QyWFdDU242TzVZVGM0Yy8xanlpWnQ1K1RMd0loQUphUTRnd0pqemdRCjlGMm5BcmFzMzRiQTdmY0ovd2hTTWVUbWZPbDVmK0pNCi0tLS0tRU5EIENFUlRJRklDQVRFIFJFUVVFU1QtLS0tLQo= signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: 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 conditions: - lastTransitionTime: "2026-03-18T16:44:19Z" lastUpdateTime: "2026-03-18T16:44:19Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved