--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-06-11T16:08:55Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-06-11T16:08:55Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-06-11T16:08:55Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-06-11T16:08:55Z" name: csr-z7j9j resourceVersion: "6544" uid: 34cc30f9-493a-4d18-95b6-8d3772f1b5b1 spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=ec5ea55d9226d59196c0f50abf2799eef02456be66d2c0e13e9e15a7981de56e groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: LS0tLS1CRUdJTiBDRVJUSUZJQ0FURSBSRVFVRVNULS0tLS0KTUlJQkJUQ0JyQUlCQURCS01SVXdFd1lEVlFRS0V3eHplWE4wWlcwNmJtOWtaWE14TVRBdkJnTlZCQU1US0hONQpjM1JsYlRwdWIyUmxPbWx3TFRFd0xUQXRNVEk0TFRFMk1TNWxZekl1YVc1MFpYSnVZV3d3V1RBVEJnY3Foa2pPClBRSUJCZ2dxaGtqT1BRTUJCd05DQUFScTZkK3VySkwwbUpFWGl2ZFhBeEtpb0QrNzlHQThQY09BOERtR3RPSHgKUXpwOGRuQ3I1ZGVyUWQrZnhoT0ZVYWV2TGRnQkJFT1ZQVVVRMGZiS1dTUFNvQUF3Q2dZSUtvWkl6ajBFQXdJRApTQUF3UlFJZ2N1SjYrSVh0bEtUTGg3aVF1Z3k4TC9EMVZ4UFBmWmhRRmRCZlZ6MWpRZzhDSVFDakxUaHJjTlFoCkNpSG05Qk5pYm53WThaQ0pjdTJvOVVTMkFJZnhqQlBJZVE9PQotLS0tLUVORCBDRVJUSUZJQ0FURSBSRVFVRVNULS0tLS0K signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: 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 conditions: - lastTransitionTime: "2026-06-11T16:08:55Z" lastUpdateTime: "2026-06-11T16:08:55Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved