--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-06-05T15:40:55Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-06-05T15:40:55Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-06-05T15:40:55Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-06-05T15:40:55Z" name: csr-5gj94 resourceVersion: "5868" uid: 9cf597b7-8744-4e5a-a146-59108c040483 spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=ec71b2a5c8b03c112d491a2bb93361bd53347b2593a0637fd8794d013c7b1b6a groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: LS0tLS1CRUdJTiBDRVJUSUZJQ0FURSBSRVFVRVNULS0tLS0KTUlJQkJUQ0JyQUlCQURCS01SVXdFd1lEVlFRS0V3eHplWE4wWlcwNmJtOWtaWE14TVRBdkJnTlZCQU1US0hONQpjM1JsYlRwdWIyUmxPbWx3TFRFd0xUQXRNVE0xTFRFek15NWxZekl1YVc1MFpYSnVZV3d3V1RBVEJnY3Foa2pPClBRSUJCZ2dxaGtqT1BRTUJCd05DQUFSSUNMNWFJajJBRk5PbUhVTjVUSmZaaitHYUNpNmFiRjNkTjVaS29DaTgKazdKWU1aeTZRN1UyWDRWU3hqdkhNaFR5NGgra2ttRy81U2oycFpqUlZDNkhvQUF3Q2dZSUtvWkl6ajBFQXdJRApTQUF3UlFJaEFOMHpiRmdWZzNJVkNsNWN1V3J4VTBXUlV1QTFIenZPbUp2amt5cGx5ZXZHQWlBMGlGT2Q2M1BiCi9QeFNVUmdZSVZpek1aeXZwNUZuVHFPNFR0a1BWUExBRkE9PQotLS0tLUVORCBDRVJUSUZJQ0FURSBSRVFVRVNULS0tLS0K signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: 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 conditions: - lastTransitionTime: "2026-06-05T15:40:55Z" lastUpdateTime: "2026-06-05T15:40:55Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved