--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-05-26T11:24:38Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-05-26T11:24:38Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-05-26T11:24:38Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-05-26T11:24:38Z" name: csr-cnh5j resourceVersion: "5220" uid: 29916608-712d-4b00-9c35-099b3c0138a1 spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=53af22be0708015e71e6bf6ae6c0dd43e2897bdaf18b12d5af01c94db48c2160 groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: LS0tLS1CRUdJTiBDRVJUSUZJQ0FURSBSRVFVRVNULS0tLS0KTUlJQkJEQ0JyQUlCQURCS01SVXdFd1lEVlFRS0V3eHplWE4wWlcwNmJtOWtaWE14TVRBdkJnTlZCQU1US0hONQpjM1JsYlRwdWIyUmxPbWx3TFRFd0xUQXRNVE15TFRJd015NWxZekl1YVc1MFpYSnVZV3d3V1RBVEJnY3Foa2pPClBRSUJCZ2dxaGtqT1BRTUJCd05DQUFRRFBiUFU3WldFMU8zMVdlL2V6Mi9UaDZWVzROK0JObVE2THVHMkFEUzAKdVB1cjlTQWhreVNQTnNwL1dZdGlCYTREZGh0ejNmYlNTZU9zclBzQURPWFBvQUF3Q2dZSUtvWkl6ajBFQXdJRApSd0F3UkFJZ1N6YWpJN3I4UmxJN1VKaVpsQVlkMWtrbm5pejFybWxqSlFJcW1jL0JRUnNDSURNR2Qwb3dPOGNLCkNjOXJGdzhSR3ZJTkhqLzJZZXNsMkJPL0hMRmxUYWJrCi0tLS0tRU5EIENFUlRJRklDQVRFIFJFUVVFU1QtLS0tLQo= signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: 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 conditions: - lastTransitionTime: "2026-05-26T11:24:38Z" lastUpdateTime: "2026-05-26T11:24:38Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved