--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-06-02T15:46:29Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-06-02T15:46:29Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-06-02T15:46:29Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-06-02T15:46:29Z" name: csr-dnm2w resourceVersion: "5023" uid: 82cbb5ab-3fc1-4b23-9310-38b77922ab0a spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=0f1762c923a584d161f62ee0802e6c0f6359535a1785eec365688f54f9cbfec8 groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: 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 conditions: - lastTransitionTime: "2026-06-02T15:46:29Z" lastUpdateTime: "2026-06-02T15:46:29Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved