--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-05-25T12:13:17Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-05-25T12:13:17Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-05-25T12:13:17Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-05-25T12:13:17Z" name: csr-2qpq7 resourceVersion: "5965" uid: 075ac6d1-311e-49c4-b7f5-7d7822ccf93a spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=b2df4b80d76afb489b85825bd7c0488a6b7996a309db3b7706ac78bd50f68818 groups: - system:nodes - system:authenticated request: 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 signerName: kubernetes.io/kubelet-serving usages: - digital signature - server auth username: system:node:ip-10-0-142-53.ec2.internal status: certificate: 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 conditions: - lastTransitionTime: "2026-05-25T12:13:17Z" lastUpdateTime: "2026-05-25T12:13:17Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved