--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-04-17T07:51:56Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-04-17T07:51:56Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-04-17T07:51:56Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-04-17T07:51:56Z" name: csr-kb6pf resourceVersion: "5700" uid: 4b66944a-1d6c-4ac1-87c0-94df03d07e52 spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=f34058f300dd90fe73bf41460cb85e0cea76bb2f775d0992ed6937423546f8db groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: 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 conditions: - lastTransitionTime: "2026-04-17T07:51:56Z" lastUpdateTime: "2026-04-17T07:51:56Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved