--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-04-17T07:51:27Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-04-17T07:51:27Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-04-17T07:51:27Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-04-17T07:51:27Z" name: csr-x2fcr resourceVersion: "5692" uid: 89f68ab1-e66b-4bad-8abb-5fcfa466522a spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=2ff1cf922432a8e39a2120dc13fd9e4378641b2fcca454bacd23f52e3d702f59 groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: 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 conditions: - lastTransitionTime: "2026-04-17T07:51:27Z" lastUpdateTime: "2026-04-17T07:51:27Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved