--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-06-06T20:19:08Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-06-06T20:19:08Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-06-06T20:19:08Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-06-06T20:19:08Z" name: csr-xhb7q resourceVersion: "5965" uid: ff1483d0-e4c2-481d-a370-33c58d4dfedd spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=01d63b65901189e6a547aba40d89352c771fee1d5f70e781c489374d5c9f6fd2 groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: LS0tLS1CRUdJTiBDRVJUSUZJQ0FURSBSRVFVRVNULS0tLS0KTUlJQkJUQ0JyQUlCQURCS01SVXdFd1lEVlFRS0V3eHplWE4wWlcwNmJtOWtaWE14TVRBdkJnTlZCQU1US0hONQpjM1JsYlRwdWIyUmxPbWx3TFRFd0xUQXRNVFF3TFRFek5DNWxZekl1YVc1MFpYSnVZV3d3V1RBVEJnY3Foa2pPClBRSUJCZ2dxaGtqT1BRTUJCd05DQUFUZTF1OXYwTCtvNm5IMG4vK20yajJtcGpzL05zQitrM3o4TFM2ZmJCZzIKQW82UWVoMHN5MG8zM3VYQm5JZEJ6aTlITlowVVZUT0NjRW9xczFCUDlLL0dvQUF3Q2dZSUtvWkl6ajBFQXdJRApTQUF3UlFJaEFMSWVSeDBSM3hDeWJJWDFNTnJlYnJyQVpOOHBOZFJWWG5vVkE0MWlKazZJQWlBNFU4a1BSVW9ECmh6a3gvWDVoV2x5MkM5ZmQyTVN6UnFGRlV1SkxvTXNpc0E9PQotLS0tLUVORCBDRVJUSUZJQ0FURSBSRVFVRVNULS0tLS0K signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: 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 conditions: - lastTransitionTime: "2026-06-06T20:19:08Z" lastUpdateTime: "2026-06-06T20:19:08Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved