--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-05-20T20:24:10Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-05-20T20:24:10Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-05-20T20:24:10Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-05-20T20:24:10Z" name: csr-l5zwx resourceVersion: "5522" uid: 31d818ce-0577-43ff-9243-df278064e977 spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=9cc2d71581b17138959f0662cdd6685b3b753b1a168344dfab572ee7ae0b9c0a groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: LS0tLS1CRUdJTiBDRVJUSUZJQ0FURSBSRVFVRVNULS0tLS0KTUlJQkJUQ0JyQUlCQURCS01SVXdFd1lEVlFRS0V3eHplWE4wWlcwNmJtOWtaWE14TVRBdkJnTlZCQU1US0hONQpjM1JsYlRwdWIyUmxPbWx3TFRFd0xUQXRNVE0zTFRFMU9TNWxZekl1YVc1MFpYSnVZV3d3V1RBVEJnY3Foa2pPClBRSUJCZ2dxaGtqT1BRTUJCd05DQUFTc2lyL2ZycFhKT1JnOTdyYjNYNSs2a01IMWZ4WDAxQVZJTGpCbkttR1AKSENWZmhlU25jVmo1TllHaHRXb0RtYkFFamJ3bEhiM2ZHN0JXNWdWeS9TVHVvQUF3Q2dZSUtvWkl6ajBFQXdJRApTQUF3UlFJZ2RjZnR3WEM3UHdmNU9ZQVF0TXczUmRrWnZaeTdGVEUxSFloZ1R3elowNHdDSVFERkJKa0xVS0ovCkxNc1BrK3lZbU9EWmhySkpkZlZBWHFXS2oxUTJSazJiUXc9PQotLS0tLUVORCBDRVJUSUZJQ0FURSBSRVFVRVNULS0tLS0K signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: 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 conditions: - lastTransitionTime: "2026-05-20T20:24:10Z" lastUpdateTime: "2026-05-20T20:24:10Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved