--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-05-21T18:34:17Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-05-21T18:34:17Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-05-21T18:34:17Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-05-21T18:34:17Z" name: csr-7wzz5 resourceVersion: "5582" uid: 105d1a9a-7793-4f4e-89d0-9c580617949a spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=960766d65dc0faaa8d1dc0a2d06fd0b8d46b53818120faee7d312f5d7643ad96 groups: - system:nodes - system:authenticated request: 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 signerName: kubernetes.io/kubelet-serving usages: - digital signature - server auth username: system:node:ip-10-0-128-227.ec2.internal status: certificate: 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 conditions: - lastTransitionTime: "2026-05-21T18:34:17Z" lastUpdateTime: "2026-05-21T18:34:17Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved