--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-05-26T16:00:50Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-05-26T16:00:50Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-05-26T16:00:50Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-05-26T16:00:50Z" name: csr-tk7z7 resourceVersion: "5535" uid: 8eca3fa9-76db-4953-b843-0eb9cbaf55e4 spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=1d653e0442ea26071ff49465f1edc9baf247f02baff08951e21c0d46dffdd015 groups: - system:nodes - system:authenticated request: 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 signerName: kubernetes.io/kubelet-serving usages: - digital signature - server auth username: system:node:ip-10-0-129-89.ec2.internal status: certificate: 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 conditions: - lastTransitionTime: "2026-05-26T16:00:50Z" lastUpdateTime: "2026-05-26T16:00:50Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved