--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-06-05T03:43:21Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-06-05T03:43:21Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-06-05T03:43:21Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-06-05T03:43:21Z" name: csr-b8vzz resourceVersion: "6436" uid: 775ee05d-e7ba-42f0-aab4-8b1ce6a7f6aa spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=5331e107729359284f8feac1a25a54eb4f2f4312a85cf3cc5c3efe80594290f1 groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: LS0tLS1CRUdJTiBDRVJUSUZJQ0FURS0tLS0tCk1JSUN1VENDQWFHZ0F3SUJBZ0lQVHBvMDlLemQrZHNQSWFQTmoycjNNQTBHQ1NxR1NJYjNEUUVCQ3dVQU1DNHgKRWpBUUJnTlZCQXNUQ1c5d1pXNXphR2xtZERFWU1CWUdBMVVFQXhNUGEzVmlaUzFqYzNJdGMybG5ibVZ5TUI0WApEVEkyTURZd05UQXpNemd5TVZvWERUSTRNRFl3TkRBek16Z3lNVm93U1RFVk1CTUdBMVVFQ2hNTWMzbHpkR1Z0Ck9tNXZaR1Z6TVRBd0xnWURWUVFERXlkemVYTjBaVzA2Ym05a1pUcHBjQzB4TUMwd0xURXpNaTAxTXk1bFl6SXUKYVc1MFpYSnVZV3d3V1RBVEJnY3Foa2pPUFFJQkJnZ3Foa2pPUFFNQkJ3TkNBQVJVdThCZ0M4VnhzYTI5RXhuZQprQzZ0aTJ6Q3JFZ05WSG5kc21iS2NEektsTFdyOFhvVUNjQlhlWHl4TkVkU09id211c0pxLzR4c3ZiQm1heFBjCmlVb1dvNEdETUlHQU1BNEdBMVVkRHdFQi93UUVBd0lIZ0RBVEJnTlZIU1VFRERBS0JnZ3JCZ0VGQlFjREFqQU0KQmdOVkhSTUJBZjhFQWpBQU1Fc0dBMVVkSXdSRU1FS0FRRmg4SWcyZVh6a3VkU1EvRjF5L2FvbnE3Y2pUSUJQMAp0QXBDK25uTnNSOEpQdkZ3eU1ncHZTRFptak1RN0ZOWHRqSTBINFJlY1d4QUljVjJhOTY4UVhrd0RRWUpLb1pJCmh2Y05BUUVMQlFBRGdnRUJBTGJoUVN2K0dIZEkvVjhrcFJlMkwvSHJXWWlyYWJ4eU4zRThEMUo0NDRHM0dzNW4KS0RGbkxvc3V3bTBLMVdiYWJkelkxeE5YUWdQRmErakE5NU9OWTZSbTF0ZUVYR1VySHozQlpma3F3VitYaEpjTgptck9JakxmQmRmdERYUjR4d0JqMk95bTA4eTlUd2pZUFBwcnJZNjc3YkNZbnlnT0x0OWdPQi9GYmVkU0RPcUxzCm01ZzQ2aC95UVVoS1haNklINVkrWk5XQjVkZG9UNHBaZlF5T3Ztb0JncWFDckdCTXFlejBRN0llYklsVjZ6Z1IKZHpid3N3MnFwVmt0d0NCYmlnN1RiUEY5K3BZNFFOUU9MbG9qUVhWbjhJaGFXTmovWWRHWVMrOWJna3NGY1hITwpNR21yeVNiNG00SXNzSlVHY0s5V2NkejZSaWhXMEtnQXU4VGlrMXc9Ci0tLS0tRU5EIENFUlRJRklDQVRFLS0tLS0K conditions: - lastTransitionTime: "2026-06-05T03:43:21Z" lastUpdateTime: "2026-06-05T03:43:21Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved