--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-06-11T21:43:12Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-06-11T21:43:12Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-06-11T21:43:12Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-06-11T21:43:12Z" name: csr-zrz9m resourceVersion: "6716" uid: c0706937-5570-4331-a5f4-f71f890a5d86 spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=ecc352a03672904e2e747e3cd68c1aa3669d71f141c27f1030de4190b6a5de57 groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: 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 conditions: - lastTransitionTime: "2026-06-11T21:43:12Z" lastUpdateTime: "2026-06-11T21:43:12Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved