--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-05-28T17:17:49Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-05-28T17:17:49Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-05-28T17:17:49Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-05-28T17:17:49Z" name: csr-vc6j6 resourceVersion: "6078" uid: fa851774-87cc-4ed6-ad7a-7eb79ab62c3e spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=09961950d2e319e4ba78e0b90d1d0c14d460c7c0bfdf7377ba328171100dfb77 groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: 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 conditions: - lastTransitionTime: "2026-05-28T17:17:49Z" lastUpdateTime: "2026-05-28T17:17:49Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved