--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-04-17T20:04:21Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-04-17T20:04:21Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-04-17T20:04:21Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-04-17T20:04:21Z" name: csr-dksxk resourceVersion: "6177" uid: 8de48ec2-d727-4014-a8c0-824e2eaf2a3e spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=f923023d5a0a6539ba63a9800802ba16cb814c10470a79ea12afe07ce611c896 groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: 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 conditions: - lastTransitionTime: "2026-04-17T20:04:21Z" lastUpdateTime: "2026-04-17T20:04:21Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved