--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-06-09T13:28:20Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-06-09T13:28:20Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-06-09T13:28:20Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-06-09T13:28:20Z" name: csr-dngr7 resourceVersion: "6318" uid: 6d647c6b-8674-4ddd-9328-307253b659cb spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=3613e338014ec1c69a5ee1a8b55c62ae3e3437f44237260dee20b7dfbfd16735 groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: LS0tLS1CRUdJTiBDRVJUSUZJQ0FURSBSRVFVRVNULS0tLS0KTUlJQkJEQ0Jxd0lCQURCSk1SVXdFd1lEVlFRS0V3eHplWE4wWlcwNmJtOWtaWE14TURBdUJnTlZCQU1USjNONQpjM1JsYlRwdWIyUmxPbWx3TFRFd0xUQXRNVE13TFRneExtVmpNaTVwYm5SbGNtNWhiREJaTUJNR0J5cUdTTTQ5CkFnRUdDQ3FHU000OUF3RUhBMElBQkl0WG8xNnBDRjRqVWpKZ3pxRlZKUVRhMzZuaGtLOVl6Zno1d0tsVDZtMDQKdDlaUHVmM1gySTFZS3dOa3E1YURkMWgvTThJazdUL3ZqL3VSS09kcFYyU2dBREFLQmdncWhrak9QUVFEQWdOSQpBREJGQWlFQTRUWGhSUTlNVjhaQm50RmUvSkVmVFJJd0NjZ3FSSStpa3JsSTRQOWdFT29DSUJEcEVqMldXYk5NCmNJRGc0UVMzSUt6SWd0OXVnK0w2dWVSeStYMVZqZEFlCi0tLS0tRU5EIENFUlRJRklDQVRFIFJFUVVFU1QtLS0tLQo= signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: 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 conditions: - lastTransitionTime: "2026-06-09T13:28:20Z" lastUpdateTime: "2026-06-09T13:28:20Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved