--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-06-09T07:03:09Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-06-09T07:03:09Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-06-09T07:03:09Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-06-09T07:03:09Z" name: csr-xxsps resourceVersion: "6454" uid: 489d7e39-02a9-4873-bef3-bceaf790739d spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=ca693b9ac94f6276df160c01e17186daed88c0b992c125e67cd5a4094c719795 groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: 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 conditions: - lastTransitionTime: "2026-06-09T07:03:09Z" lastUpdateTime: "2026-06-09T07:03:09Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved