--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-05-21T19:21:45Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-05-21T19:21:45Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-05-21T19:21:45Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-05-21T19:21:45Z" name: csr-d5f6v resourceVersion: "5172" uid: f08c1991-7271-4bbe-bd03-24163ebe1322 spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=e48395373457a93bd559acc6501b2cd54884ed0060100456452a0f759f75f459 groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: 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 conditions: - lastTransitionTime: "2026-05-21T19:21:45Z" lastUpdateTime: "2026-05-21T19:21:45Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved