--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-06-09T09:35:56Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-06-09T09:35:56Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-06-09T09:35:56Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-06-09T09:35:56Z" name: csr-5lxhg resourceVersion: "6485" uid: 1e6719d0-a99d-4c09-8ef9-100f7e789c6b spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=0e682c808731adaef159696da2fd275ce2526414a5f48ad1be8da57d0d738a53 groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: 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 conditions: - lastTransitionTime: "2026-06-09T09:35:56Z" lastUpdateTime: "2026-06-09T09:35:56Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved