--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-04-24T21:26:55Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-04-24T21:26:55Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-04-24T21:26:55Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-04-24T21:26:55Z" name: csr-xpzss resourceVersion: "5952" uid: 948c23ff-b9f4-429e-b49d-910da778b0a6 spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=2f6bad9f2927a668caea189ca6f4fc9794fa0b1ca5b3246eb8e1d84152b56ed6 groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: LS0tLS1CRUdJTiBDRVJUSUZJQ0FURSBSRVFVRVNULS0tLS0KTUlJQkJUQ0JyQUlCQURCS01SVXdFd1lEVlFRS0V3eHplWE4wWlcwNmJtOWtaWE14TVRBdkJnTlZCQU1US0hONQpjM1JsYlRwdWIyUmxPbWx3TFRFd0xUQXRNVE0yTFRJd01TNWxZekl1YVc1MFpYSnVZV3d3V1RBVEJnY3Foa2pPClBRSUJCZ2dxaGtqT1BRTUJCd05DQUFTd2dQRFZaUWN3bXVZczU1Vm1lZnIxMHR1TjVXL0RhQmdmcHhlZG9URzEKQmhnNENZSWZwbHkwT1pNZENLaU9ha1NYRHpiVE9JQWh4TGcrNmEybjcxZzRvQUF3Q2dZSUtvWkl6ajBFQXdJRApTQUF3UlFJaEFNd2pVZUZTSUJvTlJ4azdzSkc3UUhCTEFJd3VKYS8rRFVCRFU1a3NteCtrQWlCSVBwaldQR04zCk0vcGtaLzFjb2VZQTFjL2ZxV2NKVTExN1BUSlNQdFhNMVE9PQotLS0tLUVORCBDRVJUSUZJQ0FURSBSRVFVRVNULS0tLS0K signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: LS0tLS1CRUdJTiBDRVJUSUZJQ0FURS0tLS0tCk1JSUN2RENDQWFTZ0F3SUJBZ0lSQUttTDlWSEtXc0xueW56K20yS0R2RHd3RFFZSktvWklodmNOQVFFTEJRQXcKTGpFU01CQUdBMVVFQ3hNSmIzQmxibk5vYVdaME1SZ3dGZ1lEVlFRREV3OXJkV0psTFdOemNpMXphV2R1WlhJdwpIaGNOTWpZd05ESTBNakV5TVRVMVdoY05Namd3TkRJek1qRXlNVFUxV2pCS01SVXdFd1lEVlFRS0V3eHplWE4wClpXMDZibTlrWlhNeE1UQXZCZ05WQkFNVEtITjVjM1JsYlRwdWIyUmxPbWx3TFRFd0xUQXRNVE0yTFRJd01TNWwKWXpJdWFXNTBaWEp1WVd3d1dUQVRCZ2NxaGtqT1BRSUJCZ2dxaGtqT1BRTUJCd05DQUFTd2dQRFZaUWN3bXVZcwo1NVZtZWZyMTB0dU41Vy9EYUJnZnB4ZWRvVEcxQmhnNENZSWZwbHkwT1pNZENLaU9ha1NYRHpiVE9JQWh4TGcrCjZhMm43MWc0bzRHRE1JR0FNQTRHQTFVZER3RUIvd1FFQXdJSGdEQVRCZ05WSFNVRUREQUtCZ2dyQmdFRkJRY0QKQWpBTUJnTlZIUk1CQWY4RUFqQUFNRXNHQTFVZEl3UkVNRUtBUUUyd2s2N1Z5L3lnb3oxbThjaDhTK0R0dXBPOQpBZ1BROUUzR2lkQjlIZm9penh6UlNlR3lkcStQVVV1SnNHeHRMUnZ6ZTFOSjJqYit3S2J1MXNrc3NrNHdEUVlKCktvWklodmNOQVFFTEJRQURnZ0VCQURpVlVUQzkwT1NYN0ZyYmxnM2RnajF0YWZXVk1KNEtnc1JoZ2ZtNnRieVUKV3dBNE9iS3VlK0dnTTIyK1I1WHhkMVZWN0xTUkoxdlV5aEdvaEc5dU9TUzFHRzN4cWZXZWtPUXVLNU50SGlabQpadENqWmwrdWZwYUcrbDdHeGVhRU11U3A4RG9xQW40NnBkeWczNjNnaU5YN01QVVFXeDhGcm9UdGpvczZHSytsClV1VXR5UU50Zmp0TVR2SjRQbzM4R3JKaWx6M1RpRHlrd1ZEQnhQYjhuZElveTF5bVVBQUVPREQ5dkxCdW5SS2oKcEZFV3RkRCtxV1VYU21lZmVhK3k2ZHQ2VzhldThtYi8zTW45eFprYjQ3MW9kbHd4K3BFNjEyTnhTak1HUGpnKwpYRFlJRVNRQnkvaHdkWkpPK3I1M1FKbjhzNis0NTllTUE5NkYrS0JSUWlFPQotLS0tLUVORCBDRVJUSUZJQ0FURS0tLS0tCg== conditions: - lastTransitionTime: "2026-04-24T21:26:55Z" lastUpdateTime: "2026-04-24T21:26:55Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved