--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-06-11T15:05:22Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-06-11T15:05:22Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-06-11T15:05:22Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-06-11T15:05:22Z" name: csr-dgzk2 resourceVersion: "5775" uid: 8afe33d3-1390-4a69-80e8-c5c41b48e94e spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=ff023ccce89fae565f1441fa628dbe51cbd79a042afa1ee9362b1694a2e5ac48 groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: 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 conditions: - lastTransitionTime: "2026-06-11T15:05:22Z" lastUpdateTime: "2026-06-11T15:05:22Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved