--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-05-25T10:50:56Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-05-25T10:50:56Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-05-25T10:50:56Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-05-25T10:50:56Z" name: csr-pttwr resourceVersion: "5136" uid: 1ed36abd-65b4-4037-b42b-6cbe21ac2885 spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=f4d82194896719b59976c76e1a21eea8a7f3f1866b351b62dbd1e384573e6c3b groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: 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 conditions: - lastTransitionTime: "2026-05-25T10:50:56Z" lastUpdateTime: "2026-05-25T10:50:56Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved