--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-05-26T19:47:17Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-05-26T19:47:17Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-05-26T19:47:17Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-05-26T19:47:17Z" name: csr-trbbm resourceVersion: "5415" uid: 19b065b9-66e9-41a4-bb8e-2d9ea723638b spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=2758f8abd3a8ae5895e8ec08d127fe020c6742e7165e843667c4c09616434d88 groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: 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 conditions: - lastTransitionTime: "2026-05-26T19:47:17Z" lastUpdateTime: "2026-05-26T19:47:17Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved