--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-05-28T17:43:34Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-05-28T17:43:34Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-05-28T17:43:34Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-05-28T17:43:34Z" name: csr-l7zc4 resourceVersion: "5515" uid: 9ce004f1-d8a0-4d05-b21d-e7ac54f9aff2 spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=51a653ea2ca1f08d7650260cf733fd1f5b79680c2d76838e31ef1a49cbf76a6b groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: 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 conditions: - lastTransitionTime: "2026-05-28T17:43:34Z" lastUpdateTime: "2026-05-28T17:43:34Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved