--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-04-24T21:28:46Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-04-24T21:28:46Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-04-24T21:28:46Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-04-24T21:28:46Z" name: csr-wtc9f resourceVersion: "5438" uid: 66bd2128-523e-4daa-99f5-ebe58f9fb1de spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=bf20dfaac67aedac96675d5b914d325e4f8bb1df21e52d152b08af4cc83e1050 groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: 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 conditions: - lastTransitionTime: "2026-04-24T21:28:46Z" lastUpdateTime: "2026-04-24T21:28:46Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved