--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-04-22T14:15:18Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-04-22T14:15:18Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-04-22T14:15:18Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-04-22T14:15:18Z" name: csr-nlwts resourceVersion: "5400" uid: 5369cb0d-1109-4087-9520-a64c4d9177f5 spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=adba0a1b19321bae976706e88dd13d442137807253a374745404cea8ea6d9707 groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: LS0tLS1CRUdJTiBDRVJUSUZJQ0FURS0tLS0tCk1JSUN1ekNDQWFPZ0F3SUJBZ0lRQnliMmdVeDgyT1VIQmtNUmdFbFlQakFOQmdrcWhraUc5dzBCQVFzRkFEQXUKTVJJd0VBWURWUVFMRXdsdmNHVnVjMmhwWm5ReEdEQVdCZ05WQkFNVEQydDFZbVV0WTNOeUxYTnBaMjVsY2pBZQpGdzB5TmpBME1qSXhOREV3TVRoYUZ3MHlPREEwTWpFeE5ERXdNVGhhTUVveEZUQVRCZ05WQkFvVERITjVjM1JsCmJUcHViMlJsY3pFeE1DOEdBMVVFQXhNb2MzbHpkR1Z0T201dlpHVTZhWEF0TVRBdE1DMHhNamt0TVRZeExtVmoKTWk1cGJuUmxjbTVoYkRCWk1CTUdCeXFHU000OUFnRUdDQ3FHU000OUF3RUhBMElBQkJ2RXhNMGtLRUJCbk9mRQo3dnVOUEVlTHAva0lZSXcreWxPaE9VSE8zYVJPZSt2a2hwZkRQZU5kZ1d1SHQxZ1cyQmU1SldOa2EvWWVaS3BECm5rUnJrOFNqZ1lNd2dZQXdEZ1lEVlIwUEFRSC9CQVFEQWdlQU1CTUdBMVVkSlFRTU1Bb0dDQ3NHQVFVRkJ3TUMKTUF3R0ExVWRFd0VCL3dRQ01BQXdTd1lEVlIwakJFUXdRb0JBNGdVMlZXOC8xc2MxMzArK29yVDgzVjhva3BqZwpQdFZjQzk5VkJGelFaeVhVa0M2ZVFRbW1ET0lSSm8vbThLRktRVU9tcjMySXhyOWVBNUpvSFJwdUh6QU5CZ2txCmhraUc5dzBCQVFzRkFBT0NBUUVBVnM3QkNDMUx5SEZjV2F3RUxMbDl2MmpYVkx4Q1VOS0FRSnJUbTdXVVVFajIKNENmWVltdzQwaUFXZE5aMzZMT0U2bkcwV0hjQU93K2N0UkQ1S052RVpTaUcxWGxGU2FLSmttVVdNUFZYMEdVYgpFQTZ1OGJEUU01WEVGNEdkTXRNazdrRFY2UjJEMDVybmRVRm9SQXQydXJDdDFMNmgwaUNXcVhOZlA2Y2hnSkhBCndpUXJsYlJKcENhZndYOEdlbWhOdzVjT2MrTytXYzF2Z1M2cWg4U0RVaVJ5bmYySWR4ZVZOczVUenJKQ1o5SjEKNDlLaXJtUjZGVHZmOG16bDlZaWxQMld4MThrUi9tNE4yUUx4SG9saEwrR1I3TzFMbkg1ays4ZzhVNFQ3N2dtYgpSdis0NWNXbDd0Tlc3S3M1Y3dDbkpOSTg2Q2kwTjJCcm5TSzIxOGdsdWc9PQotLS0tLUVORCBDRVJUSUZJQ0FURS0tLS0tCg== conditions: - lastTransitionTime: "2026-04-22T14:15:18Z" lastUpdateTime: "2026-04-22T14:15:18Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved