--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-04-17T16:52:40Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-04-17T16:52:40Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-04-17T16:52:40Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-04-17T16:52:41Z" name: csr-v7lhm resourceVersion: "5825" uid: e9312bc8-9c8c-48f2-8edd-c659a5b122a9 spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=a7edf922a6a46a3aff61d0b1516ffc11c4e834bc7186a791e425681e3b182087 groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: LS0tLS1CRUdJTiBDRVJUSUZJQ0FURS0tLS0tCk1JSUN1ekNDQWFPZ0F3SUJBZ0lSQUx1em9sTjg4OGlKb3M0clJNK0ptSzh3RFFZSktvWklodmNOQVFFTEJRQXcKTGpFU01CQUdBMVVFQ3hNSmIzQmxibk5vYVdaME1SZ3dGZ1lEVlFRREV3OXJkV0psTFdOemNpMXphV2R1WlhJdwpIaGNOTWpZd05ERTNNVFkwTnpReFdoY05Namd3TkRFMk1UWTBOelF4V2pCSk1SVXdFd1lEVlFRS0V3eHplWE4wClpXMDZibTlrWlhNeE1EQXVCZ05WQkFNVEozTjVjM1JsYlRwdWIyUmxPbWx3TFRFd0xUQXRNVE00TFRRM0xtVmoKTWk1cGJuUmxjbTVoYkRCWk1CTUdCeXFHU000OUFnRUdDQ3FHU000OUF3RUhBMElBQklWUng2aU9MV1NIakNuWQpJa3M5eVh2a0dqR1NRUnBzN3Q3R0xNM1pYS3hSZFVUYUtoZkcybkZrQ2Ntc0hIZTQ0OHNPTHRBSXFpNVJwK1hJCmE2a0J6aENqZ1lNd2dZQXdEZ1lEVlIwUEFRSC9CQVFEQWdlQU1CTUdBMVVkSlFRTU1Bb0dDQ3NHQVFVRkJ3TUMKTUF3R0ExVWRFd0VCL3dRQ01BQXdTd1lEVlIwakJFUXdRb0JBM0hxV2t0VXB3KzgvK0UrcnRwWVNHRlFYeDdMdQpEVlNtVHJHcmwybjBPd2NxQTZJY0tpaktmMFJSa29yWFArRXczZHdnQmpvaVhMbmVscVRhdzZscWdqQU5CZ2txCmhraUc5dzBCQVFzRkFBT0NBUUVBTHFybmV3N1JYaWREVUhXMTlTWUVmdCtUWExJRVR5RVBoWUNrSVlIZmUra2IKbmtWTy9hUTRDQXhyREk5SFhxM1hNZStwTmF5VFZvMkMvMmJWdXkxeGpLbEZ1RFhlZkVHMDlUMU9IYTVOczN1OQpEdDJBUUJBaFZQNTgrZDNQVkwxa0ZOekdZeWRZQnpVUDFnRlNXcXV1ZnMzaGc3VFQ0YmMzRDJVSmRBZUs0VkEyCnZ3bU9wSzdqNWRSalRhS1Fwd0wrWkI2OTFUbFN1VGVxaksvUmtSM0NWNXBlVFZRVzhSSUM3WklxcDJyRGJ6UysKNEJJQVNnMTBpUHlDYXhlRzVOdGIvYjZtMXIrNjB6MVNSWUhCaUV1aE9XTGxkWSsvSFdubk9DVllKNnJtMTM2TgpMalZTWjBRckRhQ1krenAwd2VYOXdjRXhZT3Vwb0YwOWliZXgyZjJkU1E9PQotLS0tLUVORCBDRVJUSUZJQ0FURS0tLS0tCg== conditions: - lastTransitionTime: "2026-04-17T16:52:40Z" lastUpdateTime: "2026-04-17T16:52:40Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved