--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-06-12T22:20:41Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-06-12T22:20:41Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-06-12T22:20:41Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-06-12T22:20:41Z" name: csr-dwcbn resourceVersion: "6040" uid: cb2a12bf-6194-4f38-ac95-cb36f11e9802 spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=f631049179e605974d029ab0c35af4f67a9a6b610fe2d83b8b2dddbb31b85567 groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: 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 conditions: - lastTransitionTime: "2026-06-12T22:20:41Z" lastUpdateTime: "2026-06-12T22:20:41Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved