--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-04-21T15:35:11Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-04-21T15:35:11Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-04-21T15:35:11Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-04-21T15:35:11Z" name: csr-bvdgx resourceVersion: "5145" uid: 2a7ca887-acd8-476b-a5d1-12f30d2f7039 spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=366daefb57397d5d8551a647639c613917a26cec3bec9917afae0cf158c9ac74 groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: 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 conditions: - lastTransitionTime: "2026-04-21T15:35:11Z" lastUpdateTime: "2026-04-21T15:35:11Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved