--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-05-20T13:50:22Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-05-20T13:50:22Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-05-20T13:50:22Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-05-20T13:50:22Z" name: csr-qfm2q resourceVersion: "5658" uid: f2bf3159-450f-43be-94bf-aff59b481da3 spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=a19a878ced2e7be450cba0c01a1bddbdea767401104aaa90936f8a9341ba08d4 groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: LS0tLS1CRUdJTiBDRVJUSUZJQ0FURS0tLS0tCk1JSUN1ekNDQWFPZ0F3SUJBZ0lRZUExdWdjMDJVbFp2YXkvY0ZENnpDVEFOQmdrcWhraUc5dzBCQVFzRkFEQXUKTVJJd0VBWURWUVFMRXdsdmNHVnVjMmhwWm5ReEdEQVdCZ05WQkFNVEQydDFZbVV0WTNOeUxYTnBaMjVsY2pBZQpGdzB5TmpBMU1qQXhNelExTWpKYUZ3MHlPREExTVRreE16UTFNakphTUVveEZUQVRCZ05WQkFvVERITjVjM1JsCmJUcHViMlJsY3pFeE1DOEdBMVVFQXhNb2MzbHpkR1Z0T201dlpHVTZhWEF0TVRBdE1DMHhNamt0TVRFM0xtVmoKTWk1cGJuUmxjbTVoYkRCWk1CTUdCeXFHU000OUFnRUdDQ3FHU000OUF3RUhBMElBQlB1YjdqQWtJNktPbElMcApCUFQyS1IxOXpqaWdPaHNKcEUxNXhBUjNQeWtoN2J2VFJPTHkzT0hsNXVNNUxMVUFOL21HS2lXMnJuZmtlVU5LCktwYmt2MGFqZ1lNd2dZQXdEZ1lEVlIwUEFRSC9CQVFEQWdlQU1CTUdBMVVkSlFRTU1Bb0dDQ3NHQVFVRkJ3TUMKTUF3R0ExVWRFd0VCL3dRQ01BQXdTd1lEVlIwakJFUXdRb0JBczF0cy8rMjA0eGd0bGZtZUlUeGVRanhlUzRDWQpZY1ErNGZQK29RRHZORlF4R3B3Y1lPNEw1VXpPckJFNDFiaGRLOHJGUlljSWhmeGZ3ckluN2ZzRjREQU5CZ2txCmhraUc5dzBCQVFzRkFBT0NBUUVBcTFjSU00OGRrUWxKY1dSalRoY2JWUEVMNFdBMHBmRThEM2hwMjZnMW9CZWcKVWtNdFVRRitLb3VqcHg0YkZlWStxdXNlVDNNTU5KOFFYVXE5dk5ibGVkZGk3azJrQTNPZGg4QTRuTUJQMXA4ZwpJL2NyRHQyUWFLWC8wT0hqV3Q4TTdRcmJsVHV2TER1ejUyRDJoeFhHKzA0dDNvVGR4UXNmend4TDdOQlJGVjBPCkMrYk5zMmhsQ1pOdHdtWklNTUdLc05LNHQwQThYK1hleHBnZURRSFFKWTgzU1hiekQ0WitSV2RzY1l5Z0gwcFAKZDJnK1FaR0hzZnFJRDFFM2M2Q2NGblJqSXpvMzIrZ3pyQytzWWwwaUtxTTBmZE5EUmR4ODFldENoYkZHVk5QOQptaTZQcCtQV05OenBmZStySzNBaGhjMlNRUm1jOVcxbTFHcm9qSGRoWXc9PQotLS0tLUVORCBDRVJUSUZJQ0FURS0tLS0tCg== conditions: - lastTransitionTime: "2026-05-20T13:50:22Z" lastUpdateTime: "2026-05-20T13:50:22Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved