--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-06-05T15:34:22Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-06-05T15:34:22Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-06-05T15:34:22Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-06-05T15:34:22Z" name: csr-sj2lv resourceVersion: "6437" uid: 36df84a1-6a2d-46cf-b169-252e26f09d93 spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=7fccfeaa1140bf50e1f1656884d33578b8e663938cdda83a82e977ab47c801ab groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: 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 conditions: - lastTransitionTime: "2026-06-05T15:34:22Z" lastUpdateTime: "2026-06-05T15:34:22Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved