--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-06-03T22:44:57Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-06-03T22:44:57Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-06-03T22:44:57Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-06-03T22:44:57Z" name: csr-mkshm resourceVersion: "6240" uid: 7b83addf-7709-4acb-90c7-ba1cc61feccf spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=9e5bb822bcfd5615c1c6791b096d49813280a2e6e8e44988843c6d81b4b8a2e9 groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: LS0tLS1CRUdJTiBDRVJUSUZJQ0FURSBSRVFVRVNULS0tLS0KTUlJQkJEQ0Jxd0lCQURCSk1SVXdFd1lEVlFRS0V3eHplWE4wWlcwNmJtOWtaWE14TURBdUJnTlZCQU1USjNONQpjM1JsYlRwdWIyUmxPbWx3TFRFd0xUQXRNVE0zTFRZMUxtVmpNaTVwYm5SbGNtNWhiREJaTUJNR0J5cUdTTTQ5CkFnRUdDQ3FHU000OUF3RUhBMElBQkJIOEhSblA1NUg2dWlhTk1rVmFiWUVSRXJ5MElKcEszTGZGdkJZL3lhSWQKMVZJQ0RBQ3NJZHhRWEZOTG8wSkwvaExUZnFJQm5ObVM4OGU3Y3RDQnZrV2dBREFLQmdncWhrak9QUVFEQWdOSQpBREJGQWlFQTk4Ri83dHBsL2M4V0hLN05XQTJzU3pqNmdWcHdjdGdoSnNpbEVwa1ljNk1DSUZaZnJpSkJiWDBrCnZWTlErWFFXZmM3VmZ4ejJud0pqUnVCcjE2ZlM1OCszCi0tLS0tRU5EIENFUlRJRklDQVRFIFJFUVVFU1QtLS0tLQo= signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: LS0tLS1CRUdJTiBDRVJUSUZJQ0FURS0tLS0tCk1JSUN1akNDQWFLZ0F3SUJBZ0lRUFB5ajZKK0J3U0k1LzhxeFRFdXQ1VEFOQmdrcWhraUc5dzBCQVFzRkFEQXUKTVJJd0VBWURWUVFMRXdsdmNHVnVjMmhwWm5ReEdEQVdCZ05WQkFNVEQydDFZbVV0WTNOeUxYTnBaMjVsY2pBZQpGdzB5TmpBMk1ETXlNak01TlRkYUZ3MHlPREEyTURJeU1qTTVOVGRhTUVreEZUQVRCZ05WQkFvVERITjVjM1JsCmJUcHViMlJsY3pFd01DNEdBMVVFQXhNbmMzbHpkR1Z0T201dlpHVTZhWEF0TVRBdE1DMHhNemN0TmpVdVpXTXkKTG1sdWRHVnlibUZzTUZrd0V3WUhLb1pJemowQ0FRWUlLb1pJemowREFRY0RRZ0FFRWZ3ZEdjL25rZnE2Sm8weQpSVnB0Z1JFU3ZMUWdta3JjdDhXOEZqL0pvaDNWVWdJTUFLd2gzRkJjVTB1alFrditFdE4rb2dHYzJaTHp4N3R5CjBJRytSYU9CZ3pDQmdEQU9CZ05WSFE4QkFmOEVCQU1DQjRBd0V3WURWUjBsQkF3d0NnWUlLd1lCQlFVSEF3SXcKREFZRFZSMFRBUUgvQkFJd0FEQkxCZ05WSFNNRVJEQkNnRUE2VlVNVWZsdkNmUVBFWWdidzRCcnBPeEpyaU9ZMwppSDNnV25hOWdvTGdoMzNCME1DVnJCc0dqZnkxVHNVSlJoS2F0Q0dRdXNOblBkYmkyNHVZUUw0WE1BMEdDU3FHClNJYjNEUUVCQ3dVQUE0SUJBUUFSSlQ1Z2F5RGIzR0hCdFNSMlZMOUhBNG5ISU9Bd0FrQWQvci9WN2d1eE5WU2sKUENtcVdJRTVKb0trcEpSTUF0WFpEKy80RUVVd2lEUGpTK0VGY3lMRjd0ajZSYXhJc3loaEV6cC9JVTRjSk5VMQpVTjFRQ1ZmWGdJU2FmY0hNTXREZTd5a1QvWGRWVzVFYTg4b1hHTC8wM0IvL0tWK1VIWWRuRDhMZEFkc0oxRWZwCjN4dG96ZVJYK0ltTmlUd2tRZjQxUVRZKzZhYUVQejUySTlnMDJSRE0vTjVVL2JwbTQ4RG4vNFZ1NHVpc1pUTW4KRlRVOEhsVDM3YllFRzI3WERKRHdmMHEwSk8xci9zTUpGaXRFa0lCUU9QT21vV09Ud2ZST2NIWEJSY1BINHZ0VwpxUDUrMXYxZTJabHIxaEk5NlFzeFpkRGhIV1ZEQ28vT3RpWkF2bXhaCi0tLS0tRU5EIENFUlRJRklDQVRFLS0tLS0K conditions: - lastTransitionTime: "2026-06-03T22:44:57Z" lastUpdateTime: "2026-06-03T22:44:57Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved