--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-05-27T17:58:02Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-05-27T17:58:02Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-05-27T17:58:02Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-05-27T17:58:02Z" name: csr-mszsr resourceVersion: "5900" uid: 73b1bb3a-8c14-41c1-a5de-82a4afb8a70e spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=5d27c9298baba4410c62b9de66615412066f56dffbac3171650c82f6b1b5adb8 groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: LS0tLS1CRUdJTiBDRVJUSUZJQ0FURSBSRVFVRVNULS0tLS0KTUlJQkJEQ0JyQUlCQURCS01SVXdFd1lEVlFRS0V3eHplWE4wWlcwNmJtOWtaWE14TVRBdkJnTlZCQU1US0hONQpjM1JsYlRwdWIyUmxPbWx3TFRFd0xUQXRNVFF4TFRFMU55NWxZekl1YVc1MFpYSnVZV3d3V1RBVEJnY3Foa2pPClBRSUJCZ2dxaGtqT1BRTUJCd05DQUFTaU1kR3dLdlBKdTVRTnFET1RVQzlKa21MUHdhUW5ZaCtYOVhRRkYvWncKamRwQnBKWWpzTmZXc1JCN2J3K2lkY0pJMS9ZZnloTDdaUktlV0Q1dVNWSVJvQUF3Q2dZSUtvWkl6ajBFQXdJRApSd0F3UkFJZ1FpUm5PUDd0b0hSdHpvRzJCL0dJa2wxSGhsNWd4RjlEUkg2WC9Ja2dXTndDSUUyYWxvM3pLUTgwCnY4S1hMVGNzNnRUTXZ5N3lkUmF0WmxoS3VRMHdGVzJ1Ci0tLS0tRU5EIENFUlRJRklDQVRFIFJFUVVFU1QtLS0tLQo= signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: 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 conditions: - lastTransitionTime: "2026-05-27T17:58:02Z" lastUpdateTime: "2026-05-27T17:58:02Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved