--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-05-25T11:17:42Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-05-25T11:17:42Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-05-25T11:17:42Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-05-25T11:17:42Z" name: csr-46r9w resourceVersion: "5972" uid: 799c45e8-c190-46dc-9542-ae623a6f4e3b spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=fcf6599ac3f2546f2455410e67f1c93b855334f93cd8ecea4f25a0f80263f361 groups: - system:nodes - system:authenticated request: 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 signerName: kubernetes.io/kubelet-serving usages: - digital signature - server auth username: system:node:ip-10-0-143-46.ec2.internal status: certificate: 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 conditions: - lastTransitionTime: "2026-05-25T11:17:42Z" lastUpdateTime: "2026-05-25T11:17:42Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved