--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-06-08T19:33:20Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-06-08T19:33:20Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-06-08T19:33:20Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-06-08T19:33:20Z" name: csr-8sfp7 resourceVersion: "5932" uid: 53078692-e77e-48c8-bb4c-7abbe754519d spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=52daffca61ab3ce95bb7e7e9decee4d6af7dcd45c14001495b05bc42698230da groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: LS0tLS1CRUdJTiBDRVJUSUZJQ0FURSBSRVFVRVNULS0tLS0KTUlJQkJEQ0Jxd0lCQURCSk1SVXdFd1lEVlFRS0V3eHplWE4wWlcwNmJtOWtaWE14TURBdUJnTlZCQU1USjNONQpjM1JsYlRwdWIyUmxPbWx3TFRFd0xUQXRNVE0wTFRVMkxtVmpNaTVwYm5SbGNtNWhiREJaTUJNR0J5cUdTTTQ5CkFnRUdDQ3FHU000OUF3RUhBMElBQkVncDZCMHYrMXVzVXZRNTJScU9ueFlVYWxQdmpXREd1ZW9yem8rcElodDkKNWVxV1VHOEkxU2JvM1dFczZOdElRNUlweG42TlRqRjdMbURYVytaSGJFQ2dBREFLQmdncWhrak9QUVFEQWdOSQpBREJGQWlBSEFqQ0p0YU9pS1hQV2lTYktkRTUyY1JXMG1GYjVKRmlYdTFCejU2REN4d0loQUxqaG9saml0c3prCndZNE1EVHlRdDFxS0l4bGN5VW9OVWhidExmSlAxK214Ci0tLS0tRU5EIENFUlRJRklDQVRFIFJFUVVFU1QtLS0tLQo= signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: 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 conditions: - lastTransitionTime: "2026-06-08T19:33:20Z" lastUpdateTime: "2026-06-08T19:33:20Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved