--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-06-12T18:21:49Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-06-12T18:21:49Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-06-12T18:21:49Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-06-12T18:21:49Z" name: csr-lffs5 resourceVersion: "6240" uid: 5b76a671-ba9f-4680-aa84-0d683ac6b2ac spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=24cc5b76b97d0b9ff61949070af41aa55bbbc62de50fc61d5a433c23488fea31 groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: LS0tLS1CRUdJTiBDRVJUSUZJQ0FURSBSRVFVRVNULS0tLS0KTUlJQkJEQ0JyQUlCQURCS01SVXdFd1lEVlFRS0V3eHplWE4wWlcwNmJtOWtaWE14TVRBdkJnTlZCQU1US0hONQpjM1JsYlRwdWIyUmxPbWx3TFRFd0xUQXRNVE00TFRFd01TNWxZekl1YVc1MFpYSnVZV3d3V1RBVEJnY3Foa2pPClBRSUJCZ2dxaGtqT1BRTUJCd05DQUFRR0pvQlhqb09vK1hQS2hWTmNNS1NHU2VuRlhpcVQ5WEw4UkRZbEVqeHYKVTlZY1p6dDI5cU53UEQ4anBMb1I5MGRrem5hREJrMTBKQ0YzYnNYYkNTK0xvQUF3Q2dZSUtvWkl6ajBFQXdJRApSd0F3UkFJZ1AvMjJqaU5KOFB6ZjEya1V1MGc2QjBaNGhaV1c2Ym1zNTc0WDFEVGhHM1lDSUc3ZnZhVnpGU25aCi9ldkQ1UXVZRlBzYy9OVWJpeEQzclliNXdwRzdDL1RlCi0tLS0tRU5EIENFUlRJRklDQVRFIFJFUVVFU1QtLS0tLQo= signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: LS0tLS1CRUdJTiBDRVJUSUZJQ0FURS0tLS0tCk1JSUN2RENDQWFTZ0F3SUJBZ0lSQUxLS2kzZm9uU0puWmw4UDd2QzJ5T2d3RFFZSktvWklodmNOQVFFTEJRQXcKTGpFU01CQUdBMVVFQ3hNSmIzQmxibk5vYVdaME1SZ3dGZ1lEVlFRREV3OXJkV0psTFdOemNpMXphV2R1WlhJdwpIaGNOTWpZd05qRXlNVGd4TmpRNVdoY05Namd3TmpFeE1UZ3hOalE1V2pCS01SVXdFd1lEVlFRS0V3eHplWE4wClpXMDZibTlrWlhNeE1UQXZCZ05WQkFNVEtITjVjM1JsYlRwdWIyUmxPbWx3TFRFd0xUQXRNVE00TFRFd01TNWwKWXpJdWFXNTBaWEp1WVd3d1dUQVRCZ2NxaGtqT1BRSUJCZ2dxaGtqT1BRTUJCd05DQUFRR0pvQlhqb09vK1hQSwpoVk5jTUtTR1NlbkZYaXFUOVhMOFJEWWxFanh2VTlZY1p6dDI5cU53UEQ4anBMb1I5MGRrem5hREJrMTBKQ0YzCmJzWGJDUytMbzRHRE1JR0FNQTRHQTFVZER3RUIvd1FFQXdJSGdEQVRCZ05WSFNVRUREQUtCZ2dyQmdFRkJRY0QKQWpBTUJnTlZIUk1CQWY4RUFqQUFNRXNHQTFVZEl3UkVNRUtBUUJsQmc3NHNQam5NRjM5SVNBTGtvQlI5clpmYQpSQ2F4Tkh0cWMrdE1DS0Y3cG9DVGhObXVwUVdPcldPVmloeGZnYzRhL2ZYNnFGdVFKc0cxbFZQOWpvUXdEUVlKCktvWklodmNOQVFFTEJRQURnZ0VCQUUwY051ZVJ5VkdYY1V4YXdaY0M2STRBQUVaamptaVJKR1RveHA1THpjTk0KUDNCV0NtZXZ1aEtpTERkYlRvR3R0ZEE3REdFMDhKY3BJRTNJSnVPYjZmUDBCR0FONGZvaFFNZ2M4bitjMW85dwpTcEJKd1FKWXZWeUZiQ3NpcWZ4VlZ0UGlwZ3JFc3Faa3Azdkg2QVUxNHZWQS9MeCtDMjdlZmdOWEdrRXJMaUhtClU1VmFIWGdBZWFkNnBtdWNjbEVRdE5mTHNlSDBUbEZleGNTZXJtaUJsd0tINzlQUFV2a1FQdzdLRjFaa2xiSmcKV2hCbUZSeHZyc2wzR3NrNExwRnhFY2cvUkFkY3VuQkpBd25xNG5BTGxLaURpWDcvdjdIY251anZOc1VkMUZHSgpiY2xld1FqT2JHZzl1OFAyWlo5Qzc2N3N5SmRzTmJOb0JERkFOOG9SS000PQotLS0tLUVORCBDRVJUSUZJQ0FURS0tLS0tCg== conditions: - lastTransitionTime: "2026-06-12T18:21:49Z" lastUpdateTime: "2026-06-12T18:21:49Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved