--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-04-23T08:48:04Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-04-23T08:48:04Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-04-23T08:48:04Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-04-23T08:48:04Z" name: csr-pvb8m resourceVersion: "5903" uid: 48cabcaa-2b1f-4074-836c-ee38b887f7a7 spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=8c49f154ed3cf626924ecb1add7b524b845d22508f3745d0251db8c6e1d1ceb0 groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: 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 conditions: - lastTransitionTime: "2026-04-23T08:48:04Z" lastUpdateTime: "2026-04-23T08:48:04Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved