--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-06-11T13:25:51Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-06-11T13:25:51Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-06-11T13:25:52Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-06-11T13:25:52Z" name: csr-78mlk resourceVersion: "5965" uid: cfeaa0b4-b42e-4e71-b4d3-64ecf796394a spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=2591270762a5c4624c3b90dd52d1014a23838f8221725b571ba556ee002931a4 groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: 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 conditions: - lastTransitionTime: "2026-06-11T13:25:52Z" lastUpdateTime: "2026-06-11T13:25:52Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved