--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-06-08T19:33:17Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-06-08T19:33:17Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-06-08T19:33:18Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-06-08T19:33:18Z" name: csr-cf7hv resourceVersion: "5754" uid: fa5d5533-cbfa-4f9e-ae9f-5ed6c0069001 spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=52daffca61ab3ce95bb7e7e9decee4d6af7dcd45c14001495b05bc42698230da groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: LS0tLS1CRUdJTiBDRVJUSUZJQ0FURSBSRVFVRVNULS0tLS0KTUlJQkJEQ0JyQUlCQURCS01SVXdFd1lEVlFRS0V3eHplWE4wWlcwNmJtOWtaWE14TVRBdkJnTlZCQU1US0hONQpjM1JsYlRwdWIyUmxPbWx3TFRFd0xUQXRNVE14TFRJek1DNWxZekl1YVc1MFpYSnVZV3d3V1RBVEJnY3Foa2pPClBRSUJCZ2dxaGtqT1BRTUJCd05DQUFUSi95UEpFb1hVY2pRRTIxNk5PcVdyYWtpTENPVjR0Y3p6R1RNcDFlR3MKUExJeG1pMGRjaVFYSHZtVmRQT3JSNG8vdS9LNXYwSnRtMWF2U1lJaFZjTGZvQUF3Q2dZSUtvWkl6ajBFQXdJRApSd0F3UkFJZ0lSa3NZMGx4Qm5KbDE2UFIzQnlBYXluZDRtb1hHM1NEZGNEZ1c5QjBCWG9DSURpTkcydkpKUnRuCkNkVzNXbEhLTnNxMjZhb251a3VxaUFLNWJUb2k0M2NXCi0tLS0tRU5EIENFUlRJRklDQVRFIFJFUVVFU1QtLS0tLQo= signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: LS0tLS1CRUdJTiBDRVJUSUZJQ0FURS0tLS0tCk1JSUN2RENDQWFTZ0F3SUJBZ0lSQVA0RUR4T2RPYWZKT0F1cFh6UFIzSHd3RFFZSktvWklodmNOQVFFTEJRQXcKTGpFU01CQUdBMVVFQ3hNSmIzQmxibk5vYVdaME1SZ3dGZ1lEVlFRREV3OXJkV0psTFdOemNpMXphV2R1WlhJdwpIaGNOTWpZd05qQTRNVGt5T0RFNFdoY05Namd3TmpBM01Ua3lPREU0V2pCS01SVXdFd1lEVlFRS0V3eHplWE4wClpXMDZibTlrWlhNeE1UQXZCZ05WQkFNVEtITjVjM1JsYlRwdWIyUmxPbWx3TFRFd0xUQXRNVE14TFRJek1DNWwKWXpJdWFXNTBaWEp1WVd3d1dUQVRCZ2NxaGtqT1BRSUJCZ2dxaGtqT1BRTUJCd05DQUFUSi95UEpFb1hVY2pRRQoyMTZOT3FXcmFraUxDT1Y0dGN6ekdUTXAxZUdzUExJeG1pMGRjaVFYSHZtVmRQT3JSNG8vdS9LNXYwSnRtMWF2ClNZSWhWY0xmbzRHRE1JR0FNQTRHQTFVZER3RUIvd1FFQXdJSGdEQVRCZ05WSFNVRUREQUtCZ2dyQmdFRkJRY0QKQWpBTUJnTlZIUk1CQWY4RUFqQUFNRXNHQTFVZEl3UkVNRUtBUUI1ai9TdXVQaDh3c0VpS0xTR0NxbVQxSGFzOAo1a3QvRkRRbnVUODVDVGREV1Q1ZnBhd3lMRkN4QTdieURSWmxVTitnTmcrVTVLcHlVM05JUkFpM3Nqa3dEUVlKCktvWklodmNOQVFFTEJRQURnZ0VCQUlJanlrVlB2Z2wzWkdna3VMcUttTkhzRm51ZmtmalVGZytua0tYOGdKQ3QKK1QxNlNLbk44anRQU3M2YzRpeFlzZStOUWJ2dVlicm1EZTJraUxDVStza0hZZnNqb3RUT2I2bDNLMURaTSt3dwpoVERxTjROVC9rVWVnVnIrR3VZaEhYZ3ZJS0d5dmRLY2x3MTZRYytXR0ZkZ3pkOHFPLzZhdVVWNHNlcW5DcDFCCm96YTNkWkRFcjlBVE96UFV4dzZDNDJNMzY5NjhZS1NvYW42cXZZZkwrKzdweXpWMmkyNTJjeVRPOXV5enp6QnAKeTZqMm45cEUvQXRnTG9wREJIWjlSaVE0L1M0aU1Pb2xLYlpnZ1A4QnI2UVE4ZnNpSkdYb0ovTGh4a0NEL25FaApxRWhkV3c3MkE1MmF4MFkxZmRMYnFNK0plYkZPdHdQNnl4b2J3OUlMbEc4PQotLS0tLUVORCBDRVJUSUZJQ0FURS0tLS0tCg== conditions: - lastTransitionTime: "2026-06-08T19:33:18Z" lastUpdateTime: "2026-06-08T19:33:18Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved