--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-06-02T12:39:11Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-06-02T12:39:11Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-06-02T12:39:11Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-06-02T12:39:11Z" name: csr-v44jh resourceVersion: "5284" uid: 0c8c2493-baba-408b-89d5-bbd92ae9cda2 spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=e749c4b66d6f804553f5a7a2fdddc5d253247111a5b8bd14ded49bf4bbd4f5cd groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: LS0tLS1CRUdJTiBDRVJUSUZJQ0FURSBSRVFVRVNULS0tLS0KTUlJQkJUQ0JyQUlCQURCS01SVXdFd1lEVlFRS0V3eHplWE4wWlcwNmJtOWtaWE14TVRBdkJnTlZCQU1US0hONQpjM1JsYlRwdWIyUmxPbWx3TFRFd0xUQXRNVFF6TFRFek9TNWxZekl1YVc1MFpYSnVZV3d3V1RBVEJnY3Foa2pPClBRSUJCZ2dxaGtqT1BRTUJCd05DQUFUU1lkVzZHVUxqTjFGMWRSeGp2b0FuUnI2T1N2SkFzQWZmUjNYWnZER28KVFlJcUhXWGR0MVQrSFJ4ck1yZmp4NEhFYU5xREZlZnV1bHZxNi9KV2lRTUtvQUF3Q2dZSUtvWkl6ajBFQXdJRApTQUF3UlFJZ01TRWxldjNkQ1BHWHAwUTVHajhES1ovdTFYK2FaTThIMi83K3ltTVp3M2NDSVFDNmRCQ0R4b0hVCjZ6VzRheUVueGMzMlNZTWt0ZzN1Vll3enVpTWY4VVNDQUE9PQotLS0tLUVORCBDRVJUSUZJQ0FURSBSRVFVRVNULS0tLS0K signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: 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 conditions: - lastTransitionTime: "2026-06-02T12:39:11Z" lastUpdateTime: "2026-06-02T12:39:11Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved