--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-05-21T11:30:45Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-05-21T11:30:45Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-05-21T11:30:45Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-05-21T11:30:45Z" name: csr-vcx7r resourceVersion: "5812" uid: 510ff9cc-4378-43b6-a0fb-b99536ee2605 spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=298ca58d2e6ee74fcee7dc0717d33057b47e9e82a25cbfa15606b744935b7a21 groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: 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 conditions: - lastTransitionTime: "2026-05-21T11:30:45Z" lastUpdateTime: "2026-05-21T11:30:45Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved