--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-06-03T20:43:35Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-06-03T20:43:35Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-06-03T20:43:35Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-06-03T20:43:35Z" name: csr-7fmdx resourceVersion: "6259" uid: c7884ae6-0404-4b78-8be3-18b95d5f4fa1 spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=7a92ae055ee3c8398c550905690206a096dbfd0beaae18e3c23729ba98121ada groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: LS0tLS1CRUdJTiBDRVJUSUZJQ0FURSBSRVFVRVNULS0tLS0KTUlJQkJUQ0JyQUlCQURCS01SVXdFd1lEVlFRS0V3eHplWE4wWlcwNmJtOWtaWE14TVRBdkJnTlZCQU1US0hONQpjM1JsYlRwdWIyUmxPbWx3TFRFd0xUQXRNVE0wTFRJek15NWxZekl1YVc1MFpYSnVZV3d3V1RBVEJnY3Foa2pPClBRSUJCZ2dxaGtqT1BRTUJCd05DQUFTRTVMN2g1aFJMS1VqeDVGYVFXUlAwV2owL3ZmVjRWWXJnTUxRV05SRGUKemt0L2dmb3QxQm14VEprTnhyNWxid0lVT0hSbWVRem1nRzdMcjUyV29LRzhvQUF3Q2dZSUtvWkl6ajBFQXdJRApTQUF3UlFJZ1FrenRTdWR1dVdqOFN6T2Q5RGEwL0hzWXR6T2R6UVFqNy9Zb1BYT2tsRHdDSVFDQ291VlpqOEVlCnNYVXpES1hFRXdkRk9sdVBVak40ODYwYzJXK25rdU9NV0E9PQotLS0tLUVORCBDRVJUSUZJQ0FURSBSRVFVRVNULS0tLS0K signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: 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 conditions: - lastTransitionTime: "2026-06-03T20:43:35Z" lastUpdateTime: "2026-06-03T20:43:35Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved