--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-06-05T03:43:05Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-06-05T03:43:05Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-06-05T03:43:05Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-06-05T03:43:05Z" name: csr-z6r6t resourceVersion: "6129" uid: ba0d4405-953e-4968-b699-f46e7e16fc26 spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=5331e107729359284f8feac1a25a54eb4f2f4312a85cf3cc5c3efe80594290f1 groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: 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 conditions: - lastTransitionTime: "2026-06-05T03:43:05Z" lastUpdateTime: "2026-06-05T03:43:05Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved