--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-05-20T15:31:41Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-05-20T15:31:41Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-05-20T15:31:41Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-05-20T15:31:41Z" name: csr-2pj56 resourceVersion: "5331" uid: 2de4ed64-9776-4987-8fcb-b6e09d521fce spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=5ff55ad907888b35b9d3164e49d526b5667fc7a40cf27023cc22514d97ed2161 groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: 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 conditions: - lastTransitionTime: "2026-05-20T15:31:41Z" lastUpdateTime: "2026-05-20T15:31:41Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved