--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-05-21T21:21:29Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-05-21T21:21:29Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-05-21T21:21:29Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-05-21T21:21:29Z" name: csr-wfr5l resourceVersion: "6086" uid: 5d48ba3b-7a35-4b28-b1eb-178ec899eb0b spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=6268b0587876d7e17ec8ec92b4cab6e7db42711c6c75cf0b51c05e96ae0c4794 groups: - system:nodes - system:authenticated request: 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 signerName: kubernetes.io/kubelet-serving usages: - digital signature - server auth username: system:node:ip-10-0-129-28.ec2.internal status: certificate: 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 conditions: - lastTransitionTime: "2026-05-21T21:21:29Z" lastUpdateTime: "2026-05-21T21:21:29Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved