--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-06-02T12:52:03Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-06-02T12:52:03Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-06-02T12:52:03Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-06-02T12:52:03Z" name: csr-2vrsk resourceVersion: "5490" uid: 5e1b221b-809b-4854-a8fc-3a6d57e12a79 spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=134b4b8baac35eed94564523af6786321b0fe4c84fa4cf8a87440279ff5180f1 groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: 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 conditions: - lastTransitionTime: "2026-06-02T12:52:03Z" lastUpdateTime: "2026-06-02T12:52:03Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved