--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-05-21T20:38:30Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-05-21T20:38:30Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-05-21T20:38:30Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-05-21T20:38:30Z" name: csr-dcfmc resourceVersion: "5929" uid: ba4f4f04-8911-488f-9f54-c32ebc162d7e spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=cd1b24fc117ab88f5e6d754ee876e2e0f41f3e1f2d54be735915eaa41188c636 groups: - system:nodes - system:authenticated request: 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 signerName: kubernetes.io/kubelet-serving usages: - digital signature - server auth username: system:node:ip-10-0-133-110.ec2.internal status: certificate: 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 conditions: - lastTransitionTime: "2026-05-21T20:38:30Z" lastUpdateTime: "2026-05-21T20:38:30Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved