--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-05-25T11:23:29Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-05-25T11:23:29Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-05-25T11:23:29Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-05-25T11:23:29Z" name: csr-8jxjg resourceVersion: "6633" uid: 31c50129-a9c3-48c4-837f-1f35a00928b5 spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=5058554368d705c454e213a93c49402e1e50224116598f603e9b5b8cf795fcb4 groups: - system:nodes - system:authenticated request: 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 signerName: kubernetes.io/kubelet-serving usages: - digital signature - server auth username: system:node:ip-10-0-128-206.ec2.internal status: certificate: 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 conditions: - lastTransitionTime: "2026-05-25T11:23:29Z" lastUpdateTime: "2026-05-25T11:23:29Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved