--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-06-15T04:25:24Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-06-15T04:25:24Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-06-15T04:25:24Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-06-15T04:25:24Z" name: csr-9gk24 resourceVersion: "6222" uid: 80c08c20-07e3-4612-a282-27e2e138573c spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=afe28edb481529d7ee3732479d7e6cdc4a789b1179b4cae3993f879082177495 groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: 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 conditions: - lastTransitionTime: "2026-06-15T04:25:24Z" lastUpdateTime: "2026-06-15T04:25:24Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved