--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-04-24T21:26:37Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-04-24T21:26:37Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-04-24T21:26:37Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-04-24T21:26:37Z" name: csr-j8sks resourceVersion: "5577" uid: 44c765c0-657f-4987-aa16-91af196bf172 spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=2f6bad9f2927a668caea189ca6f4fc9794fa0b1ca5b3246eb8e1d84152b56ed6 groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: LS0tLS1CRUdJTiBDRVJUSUZJQ0FURS0tLS0tCk1JSUN2RENDQWFTZ0F3SUJBZ0lSQUlkV1k1MkQ1QlBIU3Nsc2tUbFhGZDB3RFFZSktvWklodmNOQVFFTEJRQXcKTGpFU01CQUdBMVVFQ3hNSmIzQmxibk5vYVdaME1SZ3dGZ1lEVlFRREV3OXJkV0psTFdOemNpMXphV2R1WlhJdwpIaGNOTWpZd05ESTBNakV5TVRNM1doY05Namd3TkRJek1qRXlNVE0zV2pCS01SVXdFd1lEVlFRS0V3eHplWE4wClpXMDZibTlrWlhNeE1UQXZCZ05WQkFNVEtITjVjM1JsYlRwdWIyUmxPbWx3TFRFd0xUQXRNVE16TFRJd09TNWwKWXpJdWFXNTBaWEp1WVd3d1dUQVRCZ2NxaGtqT1BRSUJCZ2dxaGtqT1BRTUJCd05DQUFUbTYzUEVwYzlKQjkxeApKZWhMeEQ0T0UzRUtpUXFWTWFjNXB0NlRpK0tyNS9ET2FoYnFuckVlR0dkTjdWbEVsWUowVTY0MmJoMkZCcjg3CmM4NmI4NVJSbzRHRE1JR0FNQTRHQTFVZER3RUIvd1FFQXdJSGdEQVRCZ05WSFNVRUREQUtCZ2dyQmdFRkJRY0QKQWpBTUJnTlZIUk1CQWY4RUFqQUFNRXNHQTFVZEl3UkVNRUtBUUUyd2s2N1Z5L3lnb3oxbThjaDhTK0R0dXBPOQpBZ1BROUUzR2lkQjlIZm9penh6UlNlR3lkcStQVVV1SnNHeHRMUnZ6ZTFOSjJqYit3S2J1MXNrc3NrNHdEUVlKCktvWklodmNOQVFFTEJRQURnZ0VCQURkYmRwS2RFOWVwVVJVS0gxQzdldGdDZnNrYVNsRHhWbnZOZGFFQlExc3EKOXpUckQ4WEpWMDlseWhDcEIvM2h4VHJKcG9ZUTMzTDVLbVhwbmo0U1I2QkFLaGowb0diLzdabVBvcjZKUWhzMQo4MmtuOENMZjNhZ0g2cENLcXJQUDJNTmNUUnB1ZkdEYzF4SVBuMEorYlpibkFwOElqT1kwNFVRT0VvbnkzcS8vCm9TeGlPZkVNT09JaTZuTGNwYms2N29HY0RMTE5HSXBXLzRJZXkxSXBpRU1aT0psUVNYQWtPdzNCd2Jwdk4wbDMKS1Q2ZmNYMTRCUGFTdzBKRHlwbXBGNG1pV1d6NnppZ3BvRDd4UlNpejJCZXFqU2xCbVFXUVNnZEc3TTRLOUlFVgpkaDhjUUhlOFNld1AxdDBwQ1V2czRPT3JSNkVaVCtWMHZPcTlrYlp1ZVJ3PQotLS0tLUVORCBDRVJUSUZJQ0FURS0tLS0tCg== conditions: - lastTransitionTime: "2026-04-24T21:26:37Z" lastUpdateTime: "2026-04-24T21:26:37Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved