--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-06-05T20:09:13Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-06-05T20:09:13Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-06-05T20:09:13Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-06-05T20:09:13Z" name: csr-wch2p resourceVersion: "5920" uid: e10ce645-13d7-460e-bcab-9a349fa2a3b5 spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=bfa4450a50ebb4b4f57be683282e11e97468515e0bf9259bbbca25b676ab7676 groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: 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 conditions: - lastTransitionTime: "2026-06-05T20:09:13Z" lastUpdateTime: "2026-06-05T20:09:13Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved