--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-06-10T11:58:12Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-06-10T11:58:12Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-06-10T11:58:12Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-06-10T11:58:12Z" name: csr-4jbzc resourceVersion: "5923" uid: a6e6f331-0514-427e-a8bc-9816ada0ba4d spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=ec179dafabea3c1f8cdc4c5f64adb650f006f6145f406d61dab421bdfad28e33 groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: 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 conditions: - lastTransitionTime: "2026-06-10T11:58:12Z" lastUpdateTime: "2026-06-10T11:58:12Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved