--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-06-11T14:59:00Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-06-11T14:59:00Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-06-11T14:59:00Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-06-11T14:59:00Z" name: csr-gphg8 resourceVersion: "5741" uid: ba9fde69-d23c-4623-9654-3063a69f6e20 spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=29aa54d1b13020bd2347772b7886d7d96ba70207c3b46f9533037617baaf8ca6 groups: - system:nodes - system:authenticated request: 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 signerName: kubernetes.io/kubelet-serving usages: - digital signature - server auth username: system:node:ip-10-0-128-43.ec2.internal status: certificate: LS0tLS1CRUdJTiBDRVJUSUZJQ0FURS0tLS0tCk1JSUM2VENDQWRHZ0F3SUJBZ0lSQUx5MW80WnltaGhHUzIwMmxoVnZrTjB3RFFZSktvWklodmNOQVFFTEJRQXcKTGpFU01CQUdBMVVFQ3hNSmIzQmxibk5vYVdaME1SZ3dGZ1lEVlFRREV3OXJkV0psTFdOemNpMXphV2R1WlhJdwpIaGNOTWpZd05qRXhNVFExTkRBd1doY05Namd3TmpFd01UUTFOREF3V2pCSk1SVXdFd1lEVlFRS0V3eHplWE4wClpXMDZibTlrWlhNeE1EQXVCZ05WQkFNVEozTjVjM1JsYlRwdWIyUmxPbWx3TFRFd0xUQXRNVEk0TFRRekxtVmoKTWk1cGJuUmxjbTVoYkRCWk1CTUdCeXFHU000OUFnRUdDQ3FHU000OUF3RUhBMElBQks5am40T1BvUkdhT1BZVwo1WVlPZ3pLTVFsTVdUc2FNSHV0S0ZvOTNWNFR4V1Vkd3J3WHVoaDVIU2JqVG1HQStHZVlJQjdVRlFtemZUMEwxClJBQzQwNkNqZ2JFd2dhNHdEZ1lEVlIwUEFRSC9CQVFEQWdlQU1CTUdBMVVkSlFRTU1Bb0dDQ3NHQVFVRkJ3TUIKTUF3R0ExVWRFd0VCL3dRQ01BQXdTd1lEVlIwakJFUXdRb0JBMU9nVkxxeERRblNETk41NVRMVTNIU1A4U0R0Sgpsdndxc1dlT3pxYjAvZkpOVjRtUWl6UlNYeVpPVjViN0JWRHB4YXBPaDEzVWRtNUhVN3d2RTBNOGRqQXNCZ05WCkhSRUVKVEFqZ2h0cGNDMHhNQzB3TFRFeU9DMDBNeTVsWXpJdWFXNTBaWEp1WVd5SEJBb0FnQ3N3RFFZSktvWkkKaHZjTkFRRUxCUUFEZ2dFQkFFa2ZIbkVXN3BuQnpOek02WGFrNlNhVGFubXFOU2R3VUZXN2psUWgrZTZhTGI4Vgo3YmVHVzBYcDRFM3FCQUJsM0t3RVpBNXdacWJuL0RibDQ4d3o4d0owWGpneHpPM0VDMjlXWjdvbVFtQXhEbFJ1CjhwNTVRd2lmYzFrN2xLVnN1NUpUa0c5Q3ZVVFRoNk9Meng1Uk9Ya2dWMW01MDF4WnQvd2ZXOERsbWtpMFRad2cKZDhPNWk3d2xsUlJNa2xsdnVmT0pNVnk0eWkvajNxUk9iemNlNDNOUFZKWFdtdUhhSDc2Qkk1STZkVEpZd1ZqMgpBUm5TWUJLeFprdlBhcTZMVU9hY2xmMUpHN2FKRy80cEpGa0twN3Y1U1RsMXAzMm1abVMwbGFCVTFUVHlVekZ4ClJzNlFWb1lERUxRRVJTVDNGWTNIdFp0QnMrTmNYa1Irc1prM3JJST0KLS0tLS1FTkQgQ0VSVElGSUNBVEUtLS0tLQo= conditions: - lastTransitionTime: "2026-06-11T14:59:00Z" lastUpdateTime: "2026-06-11T14:59:00Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved