--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-05-21T15:37:40Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-05-21T15:37:40Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-05-21T15:37:40Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-05-21T15:37:40Z" name: csr-mfp7b resourceVersion: "5601" uid: b04d9edb-1396-47c2-a8b5-c6d6a8ad2f36 spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=5211a16fdaeb43a081cc8e39f0e5f931619099f300a8e24a26863fbc0ff3cb61 groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: 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 conditions: - lastTransitionTime: "2026-05-21T15:37:40Z" lastUpdateTime: "2026-05-21T15:37:40Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved