--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-06-15T07:48:21Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-06-15T07:48:21Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-06-15T07:48:21Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-06-15T07:48:21Z" name: csr-jg76h resourceVersion: "5710" uid: 744d0533-fba1-4149-a212-61f6fad68ef2 spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=74d907cf0438983736481d920e8de21e2558ff836212eccc486ebcad6b061c3f groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: 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 conditions: - lastTransitionTime: "2026-06-15T07:48:21Z" lastUpdateTime: "2026-06-15T07:48:21Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved