--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-06-07T16:01:51Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-06-07T16:01:51Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-06-07T16:01:51Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-06-07T16:01:51Z" name: csr-7l88d resourceVersion: "6141" uid: 92908c7f-af73-4927-9ef1-e5c498eae2a7 spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=6ffa7c85d9fe85dad795e42c6d52b2c12053441f96d0d891d32ad08327f71e51 groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: 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 conditions: - lastTransitionTime: "2026-06-07T16:01:51Z" lastUpdateTime: "2026-06-07T16:01:51Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved