--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-04-24T14:23:42Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-04-24T14:23:42Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-04-24T14:23:42Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-04-24T14:23:42Z" name: csr-v7mzw resourceVersion: "5285" uid: 2386de28-7922-458b-ae79-9289e704f41b spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=d923d99b9d33d339942acac777c211d3c780780601f6765990dbcd13d9bef4ac groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: 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 conditions: - lastTransitionTime: "2026-04-24T14:23:42Z" lastUpdateTime: "2026-04-24T14:23:42Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved