--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-04-18T02:45:41Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-04-18T02:45:41Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-04-18T02:45:41Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-04-18T02:45:41Z" name: csr-lbc4d resourceVersion: "5184" uid: 99cd3414-0688-49e5-8a3a-dd00321d279e spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=3e287d08920de90d2e104813c679fd85b6d29adf128c6b1e7ca7df3d9afcb61e groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: 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 conditions: - lastTransitionTime: "2026-04-18T02:45:41Z" lastUpdateTime: "2026-04-18T02:45:41Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved