--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-05-21T16:31:48Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-05-21T16:31:48Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-05-21T16:31:48Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-05-21T16:31:48Z" name: csr-j5f4h resourceVersion: "5511" uid: f86216d0-119a-43c5-919e-824f893152dc spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=c0e70f1ccb03437416e8622bb995c5daad089cdddabc3a11b70ef66747698977 groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: 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 conditions: - lastTransitionTime: "2026-05-21T16:31:48Z" lastUpdateTime: "2026-05-21T16:31:48Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved