--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-06-07T19:50:28Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-06-07T19:50:28Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-06-07T19:50:28Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-06-07T19:50:28Z" name: csr-zt2xt resourceVersion: "6187" uid: 22bee4e0-da3b-486f-b5b0-e3a8ede5df4a spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=962020edba313ba4fa225003195fed75b10d2d7352128f1ca0dc592d858ffe73 groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: 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 conditions: - lastTransitionTime: "2026-06-07T19:50:28Z" lastUpdateTime: "2026-06-07T19:50:28Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved