--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-04-16T19:53:57Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-04-16T19:53:57Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-04-16T19:53:57Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-04-16T19:53:57Z" name: csr-kgslj resourceVersion: "5310" uid: 9f8c17db-51b7-44dd-9a4c-993269490ad9 spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=8c7a121350c2a228b4f3c044a240fdf9b620e9c30a5c162448732f34fc80ab71 groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: LS0tLS1CRUdJTiBDRVJUSUZJQ0FURSBSRVFVRVNULS0tLS0KTUlJQkJUQ0JyQUlCQURCS01SVXdFd1lEVlFRS0V3eHplWE4wWlcwNmJtOWtaWE14TVRBdkJnTlZCQU1US0hONQpjM1JsYlRwdWIyUmxPbWx3TFRFd0xUQXRNVE13TFRFeE5pNWxZekl1YVc1MFpYSnVZV3d3V1RBVEJnY3Foa2pPClBRSUJCZ2dxaGtqT1BRTUJCd05DQUFST0JLVU9sT1QxdVYwKy9pYU5kM0gzeE9oQkljMldkUzJmYmU3c1Vzd1cKQ2ZtYW51ZFRlVklDRDd0THFna2pkN01qTGdDa2RMQmVMNlJhUE0rTTJRNk5vQUF3Q2dZSUtvWkl6ajBFQXdJRApTQUF3UlFJaEFMR2lkV28vVDBDSHVhZUtWRkNFTnBYdmJKUEdSMHNZZktuaDh5bEF6QmZsQWlCYzliVDFaMDVHCjB6S2poMEdYVDhxbjd6WG53MHdXZTE1azgwcFl6RVdmTGc9PQotLS0tLUVORCBDRVJUSUZJQ0FURSBSRVFVRVNULS0tLS0K signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: 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 conditions: - lastTransitionTime: "2026-04-16T19:53:57Z" lastUpdateTime: "2026-04-16T19:53:57Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved