--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-05-28T17:18:15Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: ovnkube operation: Update time: "2026-05-28T17:18:15Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: ovnkube-identity operation: Update subresource: approval time: "2026-05-28T17:18:15Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-05-28T17:18:29Z" name: csr-xhsc6 resourceVersion: "7412" uid: fc380f93-4cc3-433d-a179-d52f06dcba25 spec: expirationSeconds: 86400 extra: authentication.kubernetes.io/credential-id: - X509SHA256=3ad3e9baad30fd8b37a527a6c3dab1e21ed45e06bf8246b60041e89a3017946f groups: - system:nodes - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client usages: - digital signature - client auth username: system:node:ip-10-0-128-101.ec2.internal status: certificate: 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 conditions: - lastTransitionTime: "2026-05-28T17:18:15Z" lastUpdateTime: "2026-05-28T17:18:15Z" message: Auto-approved CSR "csr-xhsc6" reason: AutoApproved status: "True" type: Approved