--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-04-17T18:49:21Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-04-17T18:49:21Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-04-17T18:49:21Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-04-17T18:49:21Z" name: csr-lctg2 resourceVersion: "5866" uid: 94f260ca-a892-4ff5-b37b-1267b10f73ed spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=c13bea8e73a203c6bdf71a43e474d462752f44bcc74ecb093901a7a4095fb284 groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: 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 conditions: - lastTransitionTime: "2026-04-17T18:49:21Z" lastUpdateTime: "2026-04-17T18:49:21Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved