--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-04-23T17:41:08Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-04-23T17:41:08Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-04-23T17:41:08Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-04-23T17:41:08Z" name: csr-dfpjq resourceVersion: "5624" uid: c3a24fd4-07be-4c75-b258-b089792f94d7 spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=4bc2b5c091af425f439a7a3eb54605716170187c1a01b518e265d38cbfbd72a2 groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: LS0tLS1CRUdJTiBDRVJUSUZJQ0FURSBSRVFVRVNULS0tLS0KTUlJQkJUQ0JyQUlCQURCS01SVXdFd1lEVlFRS0V3eHplWE4wWlcwNmJtOWtaWE14TVRBdkJnTlZCQU1US0hONQpjM1JsYlRwdWIyUmxPbWx3TFRFd0xUQXRNVE14TFRFd055NWxZekl1YVc1MFpYSnVZV3d3V1RBVEJnY3Foa2pPClBRSUJCZ2dxaGtqT1BRTUJCd05DQUFTdy9DbCtaL1FOdm9kZnN5d2dxUk5qbVJhTEZVeFhoWk5RdnV4dHFZYkcKN05EdnIxeDBBTXh5dm5IRTRUYjNJcTc5Wkd6OXNEVEoxY0NyN1JjRlpoZ2ZvQUF3Q2dZSUtvWkl6ajBFQXdJRApTQUF3UlFJaEFQeFlOVjBoSDJmSWdLMVJVZTFpVFcyNnpsMU5sVHlyaWJSWUJJejNBMEw0QWlCVXg4VnlVRno4CjYzdlo5RkRpc2VwUzR0d2I0UjJ2anNuTUUzL0x6ekZYMUE9PQotLS0tLUVORCBDRVJUSUZJQ0FURSBSRVFVRVNULS0tLS0K signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: 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 conditions: - lastTransitionTime: "2026-04-23T17:41:08Z" lastUpdateTime: "2026-04-23T17:41:08Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved