--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-04-20T13:30:45Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-04-20T13:30:45Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-04-20T13:30:45Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-04-20T13:30:45Z" name: csr-g5w4p resourceVersion: "5492" uid: b40ddeb2-7073-4e79-b96c-d6800c238068 spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=540433ac2ef4d809df3320e0e73212211b6e935605b209c377a242c3e1180609 groups: - system:nodes - system:authenticated request: LS0tLS1CRUdJTiBDRVJUSUZJQ0FURSBSRVFVRVNULS0tLS0KTUlJQlJUQ0I3QUlCQURCS01SVXdFd1lEVlFRS0V3eHplWE4wWlcwNmJtOWtaWE14TVRBdkJnTlZCQU1US0hONQpjM1JsYlRwdWIyUmxPbWx3TFRFd0xUQXRNVE15TFRJek1pNWxZekl1YVc1MFpYSnVZV3d3V1RBVEJnY3Foa2pPClBRSUJCZ2dxaGtqT1BRTUJCd05DQUFSVWhJK1VsVS9RSi8zMi9OektsNWNqSFdyd0VRNExVZjVVNXpFcTlDemgKRWlKZCtRMDVzVXpJdzRQTXlRRXR3TndlcXRUdC9iMnZZUHFIeEgrVEVnRnZvRUF3UGdZSktvWklodmNOQVFrTwpNVEV3THpBdEJnTlZIUkVFSmpBa2doeHBjQzB4TUMwd0xURXpNaTB5TXpJdVpXTXlMbWx1ZEdWeWJtRnNod1FLCkFJVG9NQW9HQ0NxR1NNNDlCQU1DQTBnQU1FVUNJUUNJWmJjbmJsZHhmY2IyWkhwSG1XVGJ4alh4VWtCeDJKMXYKQ0hyS1dHZlNMZ0lnUENrY2VWYkxYam1Zd2VkL1loYzRyR3g1eFE3QTM4bGM5eXFjTUs5Y0FScz0KLS0tLS1FTkQgQ0VSVElGSUNBVEUgUkVRVUVTVC0tLS0tCg== signerName: kubernetes.io/kubelet-serving usages: - digital signature - server auth username: system:node:ip-10-0-132-232.ec2.internal status: certificate: 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 conditions: - lastTransitionTime: "2026-04-20T13:30:45Z" lastUpdateTime: "2026-04-20T13:30:45Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved