--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-06-02T15:46:34Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-06-02T15:46:34Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-06-02T15:46:34Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-06-02T15:46:34Z" name: csr-wdq8f resourceVersion: "5235" uid: 24e87488-6c42-4302-9039-174724e596cc spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=0f1762c923a584d161f62ee0802e6c0f6359535a1785eec365688f54f9cbfec8 groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: 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 conditions: - lastTransitionTime: "2026-06-02T15:46:34Z" lastUpdateTime: "2026-06-02T15:46:34Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved