--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-05-21T17:43:24Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-05-21T17:43:24Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-05-21T17:43:24Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-05-21T17:43:24Z" name: csr-n4x6n resourceVersion: "6091" uid: 9315cb87-cd50-4147-8d9f-493f0ce905d2 spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=c6bf50ffce8ededcdc2825a8390489a273f55fc587c68a3264f376e192ccc684 groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: LS0tLS1CRUdJTiBDRVJUSUZJQ0FURS0tLS0tCk1JSUN1ekNDQWFPZ0F3SUJBZ0lRWlJreWhRd2Fzd2NUR2UyOFFPaHFyVEFOQmdrcWhraUc5dzBCQVFzRkFEQXUKTVJJd0VBWURWUVFMRXdsdmNHVnVjMmhwWm5ReEdEQVdCZ05WQkFNVEQydDFZbVV0WTNOeUxYTnBaMjVsY2pBZQpGdzB5TmpBMU1qRXhOek00TWpSYUZ3MHlPREExTWpBeE56TTRNalJhTUVveEZUQVRCZ05WQkFvVERITjVjM1JsCmJUcHViMlJsY3pFeE1DOEdBMVVFQXhNb2MzbHpkR1Z0T201dlpHVTZhWEF0TVRBdE1DMHhNekV0TWpRekxtVmoKTWk1cGJuUmxjbTVoYkRCWk1CTUdCeXFHU000OUFnRUdDQ3FHU000OUF3RUhBMElBQkVMZEVkYlFsTndrVFRqSwoyakU0Y3p3aDVnSzBkeUtlM1RIMnpMWHZNWHBPRmltRWdDZU45QjY0ZTBFYWZFTzc3SzBzaU1iRHNEUW83b1AvCnc5NERHWnVqZ1lNd2dZQXdEZ1lEVlIwUEFRSC9CQVFEQWdlQU1CTUdBMVVkSlFRTU1Bb0dDQ3NHQVFVRkJ3TUMKTUF3R0ExVWRFd0VCL3dRQ01BQXdTd1lEVlIwakJFUXdRb0JBS2p1aThhcWQ5OGgzQm5oZkxaOWhBYTE3Um4vZApsbDdrdzl2SlRzajdYUzdCS3VWM0hUUllCVDFEcEVmTkRiM1BVYndkQmlXS0EySzNwUG9TV1lKK0R6QU5CZ2txCmhraUc5dzBCQVFzRkFBT0NBUUVBbnlWSnhEVW1VL2draGZWeERpTVhoSXljM0tnZ3A0MVBDbHVZZ01sMWJKaXYKQkV1MWRDdS9JSG5zdzg5eHdhZDFCajZEWm53R0ZwaG9DdFNNRngvZEx0UEg4OHBIYnZSWVBJZE9zZmR4YUlXSwpYS3lzOGhUSGh0WUYyaFdZLys4QkR3anc5d1Q4UnA5d3ZJZFQ4bEs2cHRxWHZBMXFvVnYzS2swT00wbWFQYzA3CmF6ME1UL2JIWGRaSTNKRXp4dnM4MW5CNEJNRnpCOGltWTNHSkYwUmlEMzZHVldLRHJFMXRLelkwRmthVHQxWUkKN0dHSWRPeU4rd1cxQWgrYzBlU2VsSVNHWEtPNDFVN2ViZ2tLY2ZtdngwTXBWcnVPdllQcytUMFdaL0lYaERnQgo3N2l5R3pRUkdXU1JXYllxVXFBVHZpUEJWbUNydHlaRytlS0xySTVNZGc9PQotLS0tLUVORCBDRVJUSUZJQ0FURS0tLS0tCg== conditions: - lastTransitionTime: "2026-05-21T17:43:24Z" lastUpdateTime: "2026-05-21T17:43:24Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved