--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-04-20T20:11:07Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-04-20T20:11:07Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-04-20T20:11:07Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-04-20T20:11:07Z" name: csr-9lmms resourceVersion: "5343" uid: 7a4683c2-ef46-4b9e-b66e-bc6b0bc5334f spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=34f1a9ee7d3f9457bb5ce7485f4a7923840a42433f926c761b93459385ea141d groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: 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 conditions: - lastTransitionTime: "2026-04-20T20:11:07Z" lastUpdateTime: "2026-04-20T20:11:07Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved