--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-06-08T13:31:20Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-06-08T13:31:20Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-06-08T13:31:20Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-06-08T13:31:20Z" name: csr-xnck6 resourceVersion: "6482" uid: c7720b7b-b2ea-4ebc-8098-508d18f69e50 spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=b9dce1ec84236d4c6c58a987550a45cee58fd01e3521c7277c1d466d4e0992df groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: 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 conditions: - lastTransitionTime: "2026-06-08T13:31:20Z" lastUpdateTime: "2026-06-08T13:31:20Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved