--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-04-22T19:24:10Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-04-22T19:24:10Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-04-22T19:24:10Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-04-22T19:24:10Z" name: csr-l8jlw resourceVersion: "5963" uid: 24a306b5-9b6e-4a82-813f-0f151fa17f7a spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=8bf7e1b2ec632f909fa81807ae3c591b4bf24c63e66110d7b756f748f074873a groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: LS0tLS1CRUdJTiBDRVJUSUZJQ0FURSBSRVFVRVNULS0tLS0KTUlJQkJUQ0JyQUlCQURCS01SVXdFd1lEVlFRS0V3eHplWE4wWlcwNmJtOWtaWE14TVRBdkJnTlZCQU1US0hONQpjM1JsYlRwdWIyUmxPbWx3TFRFd0xUQXRNVE15TFRFMk1DNWxZekl1YVc1MFpYSnVZV3d3V1RBVEJnY3Foa2pPClBRSUJCZ2dxaGtqT1BRTUJCd05DQUFUNVVYbTEwSXRQOWp2Q2JKNzhia1JreDlxaWY5a3NCanFnYkt3c3Y0VDMKSzdkWkhEdndkdERkRUR4ZlMvZUtFNDZOTUEyZTN3bXp4UHJCTHBGN29ZRVJvQUF3Q2dZSUtvWkl6ajBFQXdJRApTQUF3UlFJZ1BPVVZ0RFE1bXlaNFpPTUhMZWtKTW42aFduOGR3Z0c3Mko1OEVTdnFORGtDSVFDVDhFNmpYbXhBCjVKUFN6WUsrbGFoNHQrQ3ZxK2ZsNE5tRzZVSmpCWkpWSmc9PQotLS0tLUVORCBDRVJUSUZJQ0FURSBSRVFVRVNULS0tLS0K signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: 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 conditions: - lastTransitionTime: "2026-04-22T19:24:10Z" lastUpdateTime: "2026-04-22T19:24:10Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved