--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-04-21T16:01:52Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-04-21T16:01:52Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-04-21T16:01:52Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-04-21T16:01:52Z" name: csr-vkm45 resourceVersion: "5726" uid: fdb3b8cd-e133-4b27-b8f3-6d62982f031f spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=31ace85c398f2ad0e20c7d8d815ea95b1475c51896024b85523c71a0ad36e903 groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: LS0tLS1CRUdJTiBDRVJUSUZJQ0FURSBSRVFVRVNULS0tLS0KTUlJQkJEQ0JyQUlCQURCS01SVXdFd1lEVlFRS0V3eHplWE4wWlcwNmJtOWtaWE14TVRBdkJnTlZCQU1US0hONQpjM1JsYlRwdWIyUmxPbWx3TFRFd0xUQXRNVE00TFRFNU1TNWxZekl1YVc1MFpYSnVZV3d3V1RBVEJnY3Foa2pPClBRSUJCZ2dxaGtqT1BRTUJCd05DQUFRT1FRbGRmYXpvUldjbmdpa1lVRTJpYkF4TUx1MlExVlJWbUcwRVVlYXgKaDdMUGptZ2xjdlhKeGN0L0t3bnE4TFd5Wi8vWTROdjV1L1c3cGdHS0dhOGRvQUF3Q2dZSUtvWkl6ajBFQXdJRApSd0F3UkFJZ1ZKbjlXNE9CSE4va00yL1k0cldBZnFZV3hxaXIyNVR4RW44MzlHYndGNThDSUM0ZDVwRmQ1a0JMCjMycWNJeExsT1k5QUVqR3Y1RTd6K0JsOEN5dks4OWFVCi0tLS0tRU5EIENFUlRJRklDQVRFIFJFUVVFU1QtLS0tLQo= signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: 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 conditions: - lastTransitionTime: "2026-04-21T16:01:52Z" lastUpdateTime: "2026-04-21T16:01:52Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved