--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-05-28T18:46:56Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-05-28T18:46:56Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-05-28T18:46:56Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-05-28T18:46:56Z" name: csr-f9m9t resourceVersion: "6518" uid: 78064b98-ea04-4400-b52a-0b3f055423af spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=067d185c586328968a0507f9e6237029404cbf2142ffeb395d9c84f9e9b03fb7 groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: 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 conditions: - lastTransitionTime: "2026-05-28T18:46:56Z" lastUpdateTime: "2026-05-28T18:46:56Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved