--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-06-04T23:54:30Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-06-04T23:54:30Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-06-04T23:54:30Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-06-04T23:54:30Z" name: csr-5qtv8 resourceVersion: "6314" uid: 5f2086e4-44ce-4a3a-a8eb-3f31c11f2cf6 spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=35e910a0638a8f2359c62cd32ffc990442adff576aaa52a40f4ebe7f0b6939c8 groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: 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 conditions: - lastTransitionTime: "2026-06-04T23:54:30Z" lastUpdateTime: "2026-06-04T23:54:30Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved