--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-06-11T15:03:11Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: ovnkube operation: Update time: "2026-06-11T15:03:11Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: ovnkube-identity operation: Update subresource: approval time: "2026-06-11T15:03:12Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-06-11T15:03:46Z" name: csr-gztmz resourceVersion: "7727" uid: 0f9b4054-eadb-446a-8161-9de1205c1c49 spec: expirationSeconds: 86400 extra: authentication.kubernetes.io/credential-id: - X509SHA256=329cd92f4f7ec894deeb13b990259637d51b548896129cfbec75f4d7d569f9a0 groups: - system:nodes - system:authenticated request: LS0tLS1CRUdJTiBDRVJUSUZJQ0FURSBSRVFVRVNULS0tLS0KTUlJQkRUQ0J0QUlCQURCU01Sa3dGd1lEVlFRS0V4QnplWE4wWlcwNmIzWnVMVzV2WkdWek1UVXdNd1lEVlFRRApFeXh6ZVhOMFpXMDZiM1p1TFc1dlpHVTZhWEF0TVRBdE1DMHhNamd0TVRRM0xtVmpNaTVwYm5SbGNtNWhiREJaCk1CTUdCeXFHU000OUFnRUdDQ3FHU000OUF3RUhBMElBQkx1ZmhCaXZjZjI5NnB3Rk5FaUhFOWN5OWxPaVRPUG8KYnlNWXlESUx6TWh2UE9oK21lZFVlV1JiamZyNlFBZ3Z5eVVVVlI2QXhFc2JxK2U0dnp2ZkVsU2dBREFLQmdncQpoa2pPUFFRREFnTklBREJGQWlFQXcwY3dvcTZ4eW91T0ptSExvMit0UkIzT2JXYWppbFEybDJnRjJRaDFrSEVDCklFN2o4eHkvZStLYVNqTnRyczU2SmJseGx1cE5vbVJCOUFpNXpBVi96SWFGCi0tLS0tRU5EIENFUlRJRklDQVRFIFJFUVVFU1QtLS0tLQo= signerName: kubernetes.io/kube-apiserver-client usages: - digital signature - client auth username: system:node:ip-10-0-128-147.ec2.internal status: certificate: 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 conditions: - lastTransitionTime: "2026-06-11T15:03:12Z" lastUpdateTime: "2026-06-11T15:03:12Z" message: Auto-approved CSR "csr-gztmz" reason: AutoApproved status: "True" type: Approved