--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-06-02T15:14:40Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-06-02T15:14:40Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-06-02T15:14:40Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-06-02T15:14:40Z" name: csr-dj9p8 resourceVersion: "5556" uid: 2e519a13-4b32-4921-aa8b-99031329430b spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=e3e93561b245f1f0ddfa23870b5bc71a11b09af0b999a7a59db73f79a31ce8d9 groups: - system:serviceaccounts - system:serviceaccounts:openshift-machine-config-operator - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client-kubelet usages: - digital signature - client auth username: system:serviceaccount:openshift-machine-config-operator:node-bootstrapper status: certificate: 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 conditions: - lastTransitionTime: "2026-06-02T15:14:40Z" lastUpdateTime: "2026-06-02T15:14:40Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved