--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-05-25T10:51:12Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-05-25T10:51:12Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-05-25T10:51:12Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-05-25T10:51:12Z" name: csr-6j59v resourceVersion: "5710" uid: 6116c5c4-a3f3-4f10-8a9c-a57b2f220a71 spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=f4d82194896719b59976c76e1a21eea8a7f3f1866b351b62dbd1e384573e6c3b groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: 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 conditions: - lastTransitionTime: "2026-05-25T10:51:12Z" lastUpdateTime: "2026-05-25T10:51:12Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved