--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-04-20T07:50:08Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-04-20T07:50:08Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-04-20T07:50:08Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-04-20T07:50:08Z" name: csr-9h5c4 resourceVersion: "5597" uid: f4785e5c-b6fc-45ef-ae06-9d9980ba6b35 spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=86c092ca4894ed57fd276da066e38a3bdc66d5365573dc55671a1750ee1d9620 groups: - system:nodes - system:authenticated request: LS0tLS1CRUdJTiBDRVJUSUZJQ0FURSBSRVFVRVNULS0tLS0KTUlJQlFqQ0I2QUlCQURCSU1SVXdFd1lEVlFRS0V3eHplWE4wWlcwNmJtOWtaWE14THpBdEJnTlZCQU1USm5ONQpjM1JsYlRwdWIyUmxPbWx3TFRFd0xUQXRNVE00TFRRdVpXTXlMbWx1ZEdWeWJtRnNNRmt3RXdZSEtvWkl6ajBDCkFRWUlLb1pJemowREFRY0RRZ0FFVTBMZWFTS0ZKZU9tNGZmVDdYUjBnOHVMZzJaS0c0aDl3UFFXVng3SjJmRnoKK0FSeGVDSTJ4blJGdmpJUjVWOEIvRXlZcmFNSlVOOEFiaktLOGN6ME02QStNRHdHQ1NxR1NJYjNEUUVKRGpFdgpNQzB3S3dZRFZSMFJCQ1F3SW9JYWFYQXRNVEF0TUMweE16Z3ROQzVsWXpJdWFXNTBaWEp1WVd5SEJBb0FpZ1F3CkNnWUlLb1pJemowRUF3SURTUUF3UmdJaEFNR09ZWUpzSUduL28walpwbTNENjhYVlRyOFEzTmlHUldOQkNwY0IKUUtOWUFpRUEwUitRMGR2RDBoaHdaL0g5SDZtaGkwS21ndmpSOVlqYUF1TkUxSzhoUXljPQotLS0tLUVORCBDRVJUSUZJQ0FURSBSRVFVRVNULS0tLS0K signerName: kubernetes.io/kubelet-serving usages: - digital signature - server auth username: system:node:ip-10-0-138-4.ec2.internal status: certificate: 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 conditions: - lastTransitionTime: "2026-04-20T07:50:08Z" lastUpdateTime: "2026-04-20T07:50:08Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved