--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-05-21T14:41:57Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-05-21T14:41:57Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-05-21T14:41:57Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-05-21T14:41:57Z" name: csr-5pw29 resourceVersion: "5766" uid: 2f3d9494-71b6-4526-bd5b-0a9727f498cd spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=7029705886c557a0bf9ded0caa343ac246968e37ba56c0b770da82737f6eb41c groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: LS0tLS1CRUdJTiBDRVJUSUZJQ0FURS0tLS0tCk1JSUN1ekNDQWFPZ0F3SUJBZ0lRTE9JWklQY0hZNmRyODZPK1JRVW15VEFOQmdrcWhraUc5dzBCQVFzRkFEQXUKTVJJd0VBWURWUVFMRXdsdmNHVnVjMmhwWm5ReEdEQVdCZ05WQkFNVEQydDFZbVV0WTNOeUxYTnBaMjVsY2pBZQpGdzB5TmpBMU1qRXhORE0yTlRkYUZ3MHlPREExTWpBeE5ETTJOVGRhTUVveEZUQVRCZ05WQkFvVERITjVjM1JsCmJUcHViMlJsY3pFeE1DOEdBMVVFQXhNb2MzbHpkR1Z0T201dlpHVTZhWEF0TVRBdE1DMHhNekF0TVRRMkxtVmoKTWk1cGJuUmxjbTVoYkRCWk1CTUdCeXFHU000OUFnRUdDQ3FHU000OUF3RUhBMElBQk1Bcm4wR09UdlNnU1BLbQpzeFh2VU1tY3lLUjM5T1VKM3h6bmtORnBQZDZXaEtLbjZrSktOaEUreCtRVXFxbEZJYkc4VkpOdk5OamtnckpzCjVTVllCVHFqZ1lNd2dZQXdEZ1lEVlIwUEFRSC9CQVFEQWdlQU1CTUdBMVVkSlFRTU1Bb0dDQ3NHQVFVRkJ3TUMKTUF3R0ExVWRFd0VCL3dRQ01BQXdTd1lEVlIwakJFUXdRb0JBWjJvcGlZNU9LUmNLVUFJT00ydFg0V0F5YWdKeQppOUZxZExKVHh3NlJNMjZsYWhGMkRta3EyZ3NVOUx3ekdkMnVYSVFvTFJNVDhhVFZNeUpCT1ZZU2xqQU5CZ2txCmhraUc5dzBCQVFzRkFBT0NBUUVBcmpBcGljRnM1di9qVG1ac2tIVDYvZFJkbDYvaGZIWmYwUkpMbTZSelpFeTkKemNjQzNZTFdMMVFwbFdSc2ZKYW5hclJIMjhId3R1eGhDR3VTMHVweUpZcDVRMEUxeEFXbEJxSXpiMzlCbEV6WAp0Tm1kNU5EdDRwamtPQVlUcVZaTWxiMXpTbGpPSXhybk9PbGJ5MUxxZ2Y3OUluTm9Sajl1VDY0TjBwSXFzWVRnCjFXWEozaHQ0akFKeXVFaDBTZnVpUkFVZmFWdkZLTjVqUHRlK2Y1WWRUTitscThVYStaT2xqc2Z1TDQ5UlFPM2sKUnFxeU94ZWpyUmUrL3huV1lkeG56Vm0rUUMyOTZWTEtDY3V6anFpL2hVU2d6VFdua2FWbGZEaVlEaHFSKy91NgpSQm4wSGl4QTA5YUtQbnovYloyMU1zc1RsVktVWWo2ams0RFA3cFordkE9PQotLS0tLUVORCBDRVJUSUZJQ0FURS0tLS0tCg== conditions: - lastTransitionTime: "2026-05-21T14:41:57Z" lastUpdateTime: "2026-05-21T14:41:57Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved