--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-06-02T01:40:41Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-06-02T01:40:41Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-06-02T01:40:41Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-06-02T01:40:41Z" name: csr-p2dgm resourceVersion: "5532" uid: 2350a7a4-62c5-4def-8596-16e257335a8b spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=e293bc61d997a534676c6b4eb97c5e172a48fa0fe17f5d3caefd58daf3c122b5 groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: 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 conditions: - lastTransitionTime: "2026-06-02T01:40:41Z" lastUpdateTime: "2026-06-02T01:40:41Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved