--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-06-05T03:18:31Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-06-05T03:18:31Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-06-05T03:18:31Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-06-05T03:18:31Z" name: csr-jb9cn resourceVersion: "7025" uid: eea2fee3-d722-4fb3-8b62-6a5241acb3b9 spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=73c23444c558c5f80157bdc6a71b720bea98f82f77a6d10eb5dd58faa728abc3 groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: LS0tLS1CRUdJTiBDRVJUSUZJQ0FURS0tLS0tCk1JSUN2RENDQWFTZ0F3SUJBZ0lSQU14NyswMCtuMEdrWTZVSE1BUkdmNnd3RFFZSktvWklodmNOQVFFTEJRQXcKTGpFU01CQUdBMVVFQ3hNSmIzQmxibk5vYVdaME1SZ3dGZ1lEVlFRREV3OXJkV0psTFdOemNpMXphV2R1WlhJdwpIaGNOTWpZd05qQTFNRE14TXpNeFdoY05Namd3TmpBME1ETXhNek14V2pCS01SVXdFd1lEVlFRS0V3eHplWE4wClpXMDZibTlrWlhNeE1UQXZCZ05WQkFNVEtITjVjM1JsYlRwdWIyUmxPbWx3TFRFd0xUQXRNVFF4TFRFMk15NWwKWXpJdWFXNTBaWEp1WVd3d1dUQVRCZ2NxaGtqT1BRSUJCZ2dxaGtqT1BRTUJCd05DQUFUUklSSk9zMmpZSEJVSQorS0dVWVpHQWwrSkhiRWNsaHFpL3RGWVVvS0JaN3M5K1hDNXlQUE5IMFVFRmg3Z3N2aXRjNit1WEczdnRxWHJLClBFS1ZlT08rbzRHRE1JR0FNQTRHQTFVZER3RUIvd1FFQXdJSGdEQVRCZ05WSFNVRUREQUtCZ2dyQmdFRkJRY0QKQWpBTUJnTlZIUk1CQWY4RUFqQUFNRXNHQTFVZEl3UkVNRUtBUUJYWlgraDg4UmpGRnd0N2x4MFkwSEhaeVlMMQo0TFpuaThiOTRxdHdtRXhVMVk1MDVvZDd0WDdwNDlmdGxWOUljWWNUTlVwR1g5TVB3TFVjbjlRQzZLb3dEUVlKCktvWklodmNOQVFFTEJRQURnZ0VCQUNxYlZEejhJUVFVa1RTTjhZR0JPNGZqUm1NRzQ2NGhORDdWYzlkYjF1RFgKU24xbFV3VVpKRlMrOGtxVkZaTWpiRzJTcDJXa2dVODFrRFl3QUlQTGdVcEQyK1pvcE1UbzhRa25XdFM3RnpvRQp5cTlXRWVXNXlrNmlwN3cyRXl4bmZXOGs2bEZMZzNsU01mZUNhVmt3TEcvUXRWWmMwVlVreHRYSTFFTExrSjN2CklCVFJzTERRaVh4elp3VEF6RWgxREFlaTh6eW1yNlVJYW5UZnE1N2lxeTM4RWpqZUppelVzR0ZiRFNRSElFUUkKaWg5QWFqVFVTaUZLUmpLWGZEL2gxL0laaWU4T29YVnhxeWdBckxKUk1STGVXNHpkd1V3Wnp4dW9UNE1LV0NEaApSVE1XdnhIdlRpRWs3N2NPWTdFTE5vb09aR3JyOWF3Tjl0QlRRQTdPNzJrPQotLS0tLUVORCBDRVJUSUZJQ0FURS0tLS0tCg== conditions: - lastTransitionTime: "2026-06-05T03:18:31Z" lastUpdateTime: "2026-06-05T03:18:31Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved