--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-06-11T16:38:50Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-06-11T16:38:50Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-06-11T16:38:50Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-06-11T16:38:50Z" name: csr-d7trg resourceVersion: "6438" uid: 948a4cae-80ca-413c-a552-dd890c1ef683 spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=685199f40ef3f0eb408b28b36e793ce68e69d8d183cceef9ad3188cf67b45df5 groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: LS0tLS1CRUdJTiBDRVJUSUZJQ0FURS0tLS0tCk1JSUN1VENDQWFHZ0F3SUJBZ0lRVVVXZEdzSnF0d1FMR2NSRERYa09DekFOQmdrcWhraUc5dzBCQVFzRkFEQXUKTVJJd0VBWURWUVFMRXdsdmNHVnVjMmhwWm5ReEdEQVdCZ05WQkFNVEQydDFZbVV0WTNOeUxYTnBaMjVsY2pBZQpGdzB5TmpBMk1URXhOak16TlRCYUZ3MHlPREEyTVRBeE5qTXpOVEJhTUVneEZUQVRCZ05WQkFvVERITjVjM1JsCmJUcHViMlJsY3pFdk1DMEdBMVVFQXhNbWMzbHpkR1Z0T201dlpHVTZhWEF0TVRBdE1DMHhNelF0TXk1bFl6SXUKYVc1MFpYSnVZV3d3V1RBVEJnY3Foa2pPUFFJQkJnZ3Foa2pPUFFNQkJ3TkNBQVI0cHR5S0V6dFYvUnRlY1ZscwpBdi94T3hwdFk3LzV1aHg5OW5vUVZ3TjM2czBWSE5qVWFiaTdmSHB4Y016SlcyaExtUHVpVVR0QmJka21iMFNuCjk3YXVvNEdETUlHQU1BNEdBMVVkRHdFQi93UUVBd0lIZ0RBVEJnTlZIU1VFRERBS0JnZ3JCZ0VGQlFjREFqQU0KQmdOVkhSTUJBZjhFQWpBQU1Fc0dBMVVkSXdSRU1FS0FRQnkzV25hdERSOVIzdmt0U2Z2VGViNWJDclJMQ1JRNAp3S08wWk9sU3NqajNVVzhIR29tUnhGbll2dEdCbHhwdW5MZHRzVHp5anhnTFM5VFNjREFBZ1FNd0RRWUpLb1pJCmh2Y05BUUVMQlFBRGdnRUJBQmJicEJQNExGbkZNcHJpa2g1dUdLMzhkb3IrYml2aDJjZ1czWHVuOERsNDUyYlgKZGFaY3pwdUxYY3hWMW1HVXRpWmRwU0piWlhqR21KaEt0SWQxL0VCeGh1MkZ0ek1BTExsLzFMOWFYbGRPa0MzTQpOeUF4L0ZtdkdPUlNnQUlzaDQybE9YbHNETUVna2w3Nk5zZ1BQZTZ3c0kxNlRETHJZTVdSdjV3TkRYNGR0amlZClUzSzYwQzU5RGlaUW9pRXhhZTJmMXZPc0pSc0crU3hCelNvN0FpNnovNDBGMWpkckY3NzdMRHJ3NEtKK2FvMzkKR0hZTmN3NVFFc0labWFka3Q1eUY0T2FwbkNBTHRqcStjc0crSlVacm9sOVpXVnVXelpkN2liV1p4NWFsV25wZQpDOUxFQlpHYXptSFNGcXFRTjJSS1dlcXJtTG9JNUJqVmk4c0JIK0U9Ci0tLS0tRU5EIENFUlRJRklDQVRFLS0tLS0K conditions: - lastTransitionTime: "2026-06-11T16:38:50Z" lastUpdateTime: "2026-06-11T16:38:50Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved