--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-05-20T20:48:37Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-05-20T20:48:37Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-05-20T20:48:37Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-05-20T20:48:37Z" name: csr-x8p7h resourceVersion: "5532" uid: ebcdcc5b-1a21-4acd-b3ee-7bb3741e0ceb spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=5385497c1d30f4066b0d9aa4a8f6d2f626f235944282838daa5af01cb04c9920 groups: - system:nodes - system:authenticated request: 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 signerName: kubernetes.io/kubelet-serving usages: - digital signature - server auth username: system:node:ip-10-0-138-50.ec2.internal status: certificate: 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 conditions: - lastTransitionTime: "2026-05-20T20:48:37Z" lastUpdateTime: "2026-05-20T20:48:37Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved