--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-05-27T19:32:36Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-05-27T19:32:36Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-05-27T19:32:36Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-05-27T19:32:36Z" name: csr-2d2jw resourceVersion: "6070" uid: 6d0ba9a1-f1ae-4185-a902-285b4afed04a spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=98d6c78a4d2ca96e6505f18e554ac6c98b47db9b598665f2d388fbf8988fbb17 groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: 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 conditions: - lastTransitionTime: "2026-05-27T19:32:36Z" lastUpdateTime: "2026-05-27T19:32:36Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved