--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-06-10T01:02:05Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-06-10T01:02:05Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-06-10T01:02:05Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-06-10T01:02:05Z" name: csr-xjnd7 resourceVersion: "6543" uid: 5ce4c636-0d5b-4b2a-9940-f826e9f3616b spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=18f7a396608c02added22bd0aa5c07c471ed69caec61ad5e79b2511f2266c199 groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: LS0tLS1CRUdJTiBDRVJUSUZJQ0FURS0tLS0tCk1JSUN1VENDQWFHZ0F3SUJBZ0lRUFM1VDFIM2tCSXhySGZiNlg5ZVBlREFOQmdrcWhraUc5dzBCQVFzRkFEQXUKTVJJd0VBWURWUVFMRXdsdmNHVnVjMmhwWm5ReEdEQVdCZ05WQkFNVEQydDFZbVV0WTNOeUxYTnBaMjVsY2pBZQpGdzB5TmpBMk1UQXdNRFUzTURWYUZ3MHlPREEyTURrd01EVTNNRFZhTUVneEZUQVRCZ05WQkFvVERITjVjM1JsCmJUcHViMlJsY3pFdk1DMEdBMVVFQXhNbWMzbHpkR1Z0T201dlpHVTZhWEF0TVRBdE1DMHhOREl0TVM1bFl6SXUKYVc1MFpYSnVZV3d3V1RBVEJnY3Foa2pPUFFJQkJnZ3Foa2pPUFFNQkJ3TkNBQVFRbFhzeVVkcy8rVGs5MDBFKwp3RFRRWk9HR0tkNXNMWmpmLzNGY0RMVlVQMWExUTFoTEFCZ25GcDM5U0Y3T2JtNGsrQW9aTUQwd0hjWWxTUkExCmVDZzRvNEdETUlHQU1BNEdBMVVkRHdFQi93UUVBd0lIZ0RBVEJnTlZIU1VFRERBS0JnZ3JCZ0VGQlFjREFqQU0KQmdOVkhSTUJBZjhFQWpBQU1Fc0dBMVVkSXdSRU1FS0FRRDM5aGpISWViZkNFVElpWjY1b0RUU2FFYjduT0t2eAp3MCs5WGFiMlBEc3RhYS9yL01DYnZtRWk1eDl3eE9Pb0tNaVJVVUx6VzBDRXl4dGtzS3NKSnlrd0RRWUpLb1pJCmh2Y05BUUVMQlFBRGdnRUJBRmVrL04ra3l0VUFvajRtODJjblhhUks4SnduODE1TFhpNkpySmVnU29vZHAxMm0KY25VZFZKeGh6SG9Jd243OEVseFo3WllyWDMySjZHQXV5U0JFYnNkd3UwSmFwME9WNnQySU1BTGtDakpzamlRVQpJWmtKalpVOFErbTVjaTN6UCt1Z2ZNNWd2WHZ5NFpCTW9ON1g0UVpmb3d6dGozdzVrQ21FUFBuSEhMZnBIWGs1CnBLNlpOSGFtZE9XcGR6eVB0SVdHamR0NVZEdHQ2d0FoSjRnWDJyVGFBaDNDSFBDbHJ6OFlsai9JSFFlV3VhQXAKZ2VkN2xKT01FY01GNG5qN2hsM2NBQk4vMDZHdHRkV3ZQd2VPcmJuU3E0SDM0dGY1aEdrQjN1NDJ3KzVsdUdVSwpRU0NkaC9rQTdsL1UySGd5elZ1bzlZWkF3UXd4RmdmVXppZmMvNEk9Ci0tLS0tRU5EIENFUlRJRklDQVRFLS0tLS0K conditions: - lastTransitionTime: "2026-06-10T01:02:05Z" lastUpdateTime: "2026-06-10T01:02:05Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved