--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-06-09T15:01:25Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-06-09T15:01:25Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-06-09T15:01:25Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-06-09T15:01:25Z" name: csr-lf5z8 resourceVersion: "6752" uid: ac4141ad-8ea5-474c-a9ea-34469bada364 spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=8ea429e10eaf9926a57823b92759aade993c305941ddfc19960744267d9165b7 groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: LS0tLS1CRUdJTiBDRVJUSUZJQ0FURSBSRVFVRVNULS0tLS0KTUlJQkF6Q0JyQUlCQURCS01SVXdFd1lEVlFRS0V3eHplWE4wWlcwNmJtOWtaWE14TVRBdkJnTlZCQU1US0hONQpjM1JsYlRwdWIyUmxPbWx3TFRFd0xUQXRNVE16TFRJek9TNWxZekl1YVc1MFpYSnVZV3d3V1RBVEJnY3Foa2pPClBRSUJCZ2dxaGtqT1BRTUJCd05DQUFSaXlLcDlzRHJKcU41M0dFWFlsMTBlb3hHWnBEbjZpZjIzQzAzV2hKRmUKRXo5ZmgwYTcyV2ZzWHFwb2daZi82cjQwWGdOcS8zWFpwL2VLd3M1dEh4TVVvQUF3Q2dZSUtvWkl6ajBFQXdJRApSZ0F3UXdJZklaZ3paUFRIYmdXZlFFT2F1cFJRUmNxR3UzM1pzN0Fzb1cycyswYXJiUUlnVlJaQTE0Rm4zRDEyCjhtYngwdU1DUVlUNnZCaHNUcEI3eFRiZ3lBc2llZVE9Ci0tLS0tRU5EIENFUlRJRklDQVRFIFJFUVVFU1QtLS0tLQo= signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: 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 conditions: - lastTransitionTime: "2026-06-09T15:01:25Z" lastUpdateTime: "2026-06-09T15:01:25Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved