--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-05-28T17:44:18Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-05-28T17:44:18Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: ovnkube operation: Update time: "2026-05-28T17:44:18Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: ovnkube-identity operation: Update subresource: approval time: "2026-05-28T17:44:18Z" name: csr-kdffx resourceVersion: "6712" uid: 8fcd01d4-e112-40d7-ba25-bd747cf6f368 spec: expirationSeconds: 86400 extra: authentication.kubernetes.io/credential-id: - X509SHA256=70a76cbd96bde94bd76d32f0f0d6adbee6d99c795e6274e4348d8deb02cb37b6 groups: - system:nodes - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client usages: - digital signature - client auth username: system:node:ip-10-0-137-72.ec2.internal status: certificate: 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 conditions: - lastTransitionTime: "2026-05-28T17:44:18Z" lastUpdateTime: "2026-05-28T17:44:18Z" message: Auto-approved CSR "csr-kdffx" reason: AutoApproved status: "True" type: Approved