--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-05-20T14:06:38Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-05-20T14:06:38Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-05-20T14:06:38Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-05-20T14:06:38Z" name: csr-hj7t2 resourceVersion: "5585" uid: 372e967d-1d9f-483d-ad47-50b9d7603298 spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=dfef8d5d925a7cb5c72e9fa7c60e0c5bf0e9cea47e80cd5862ea961e3f2c14d1 groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: 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 conditions: - lastTransitionTime: "2026-05-20T14:06:38Z" lastUpdateTime: "2026-05-20T14:06:38Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved