--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-04-21T00:03:28Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-04-21T00:03:28Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-04-21T00:03:28Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-04-21T00:03:28Z" name: csr-hmrrs resourceVersion: "6133" uid: 15cb2ac1-89e2-423e-a29a-8247bf4d2543 spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=12ec88e9b3e9cf378712aa7869bed560b60317cc9c2d72d4c1d18ebf1be453b4 groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: LS0tLS1CRUdJTiBDRVJUSUZJQ0FURSBSRVFVRVNULS0tLS0KTUlJQkF6Q0JxZ0lCQURCSU1SVXdFd1lEVlFRS0V3eHplWE4wWlcwNmJtOWtaWE14THpBdEJnTlZCQU1USm5ONQpjM1JsYlRwdWIyUmxPbWx3TFRFd0xUQXRNVE0yTFRFdVpXTXlMbWx1ZEdWeWJtRnNNRmt3RXdZSEtvWkl6ajBDCkFRWUlLb1pJemowREFRY0RRZ0FFODlzOFZ4cmhxNTkyenNLbnB1R3crYVVJK25Odzl3eW9wUTlyeFRxYlFkWnAKSG1Ua2YyZlA1Z1cvU1cyTXlMd3pOUVJYN0J1a0VYQ2hBV0xDRlF0ZXJxQUFNQW9HQ0NxR1NNNDlCQU1DQTBnQQpNRVVDSUczand6M0Y4ZmlTeG5SZzJwbnhvRlRLdmVnQzYxbnA4bUpJK0pMaUdJci9BaUVBbDUrWUVwaVBrbFJiCjdkYm5iUFFhMUZ0Y2ZFazlWZHJYK2YyN0ZVR2FmaWs9Ci0tLS0tRU5EIENFUlRJRklDQVRFIFJFUVVFU1QtLS0tLQo= signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: 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 conditions: - lastTransitionTime: "2026-04-21T00:03:28Z" lastUpdateTime: "2026-04-21T00:03:28Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved