--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-05-28T16:07:34Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-05-28T16:07:34Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-05-28T16:07:34Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-05-28T16:07:34Z" name: csr-hndnm resourceVersion: "5421" uid: b18d7aaf-8c2d-46cf-90a7-a3e6b28efd72 spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=b30ae4e1f0b89d2c42ce0b6281c2c345b29a4f772bd07994020ad21709357199 groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: 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 conditions: - lastTransitionTime: "2026-05-28T16:07:34Z" lastUpdateTime: "2026-05-28T16:07:34Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved