--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-05-25T11:17:31Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-05-25T11:17:31Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-05-25T11:17:31Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-05-25T11:17:31Z" name: csr-gdczv resourceVersion: "6191" uid: e990b417-5e9e-4e72-91d7-89d03363dad6 spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=42f6e54f64cb4d546242013a82b0af04a0d77b13b6b6e2c193e1f82bb7307a49 groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: LS0tLS1CRUdJTiBDRVJUSUZJQ0FURSBSRVFVRVNULS0tLS0KTUlJQkJEQ0JyQUlCQURCS01SVXdFd1lEVlFRS0V3eHplWE4wWlcwNmJtOWtaWE14TVRBdkJnTlZCQU1US0hONQpjM1JsYlRwdWIyUmxPbWx3TFRFd0xUQXRNVEk0TFRFMk1TNWxZekl1YVc1MFpYSnVZV3d3V1RBVEJnY3Foa2pPClBRSUJCZ2dxaGtqT1BRTUJCd05DQUFSSitVMzl0ek5KWllUTHpLVm1Eb2d3QU82MVB4b2d2b1hLMHFaZDBKRDUKVDB5TTVoVTRMWUV1M0ZTQlpyQXVmTjFUcXRIOGxoYnBYelJhbnFzQmJ0NTJvQUF3Q2dZSUtvWkl6ajBFQXdJRApSd0F3UkFJZ0NTMVZjRWVoQUtRVTNWZGFkNFYwL1orRUVMQWtaVVVKMm5LY3Z0SktSbU1DSUNkWnRNUEpxa2ExCnpWZUJYNHVVQWJSaEhFdVNnTXBtSVcxRXpQUm41YWprCi0tLS0tRU5EIENFUlRJRklDQVRFIFJFUVVFU1QtLS0tLQo= signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: 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 conditions: - lastTransitionTime: "2026-05-25T11:17:31Z" lastUpdateTime: "2026-05-25T11:17:31Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved