--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-03-18T16:43:50Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-03-18T16:43:50Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-03-18T16:43:50Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-03-18T16:43:50Z" name: csr-9d5mv resourceVersion: "6150" uid: 4fe5acdd-b88c-4a9d-94f0-05590aa4b5e2 spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=179f17dd1339420219ec29b71f5428d7e26f7537304bd3727899cdf07ab227a8 groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: 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 conditions: - lastTransitionTime: "2026-03-18T16:43:50Z" lastUpdateTime: "2026-03-18T16:43:50Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved