--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-04-20T10:01:15Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-04-20T10:01:15Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: kubelet operation: Update time: "2026-04-20T10:01:15Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: machine-approver operation: Update subresource: approval time: "2026-04-20T10:01:15Z" name: csr-58g99 resourceVersion: "5631" uid: f0a68dc5-68e9-4bca-bc35-def09ee320d8 spec: extra: authentication.kubernetes.io/credential-id: - X509SHA256=9acb3451aa1f6b4ada9af5236dfb7199460e05fcdb7e703c7fc7e7f09384b537 groups: - system:nodes - system:authenticated request: LS0tLS1CRUdJTiBDRVJUSUZJQ0FURSBSRVFVRVNULS0tLS0KTUlJQlF6Q0I2Z0lCQURCSk1SVXdFd1lEVlFRS0V3eHplWE4wWlcwNmJtOWtaWE14TURBdUJnTlZCQU1USjNONQpjM1JsYlRwdWIyUmxPbWx3TFRFd0xUQXRNVFF3TFRrMUxtVmpNaTVwYm5SbGNtNWhiREJaTUJNR0J5cUdTTTQ5CkFnRUdDQ3FHU000OUF3RUhBMElBQlB3bzdXYzFIa3F6VC9nbCs3dFY3a2R0ZEYySW5MVktjVUh6RUpzQXhnQVAKL1FFREVENEZtQWg3MkpEY2dwWlo2UzUycFIrMkw3c0NKU3A2TXMzTVBYeWdQekE5QmdrcWhraUc5dzBCQ1E0eApNREF1TUN3R0ExVWRFUVFsTUNPQ0cybHdMVEV3TFRBdE1UUXdMVGsxTG1Wak1pNXBiblJsY201aGJJY0VDZ0NNClh6QUtCZ2dxaGtqT1BRUURBZ05JQURCRkFpQXVZMjdDeTM4VWZzNFpvUk5XU0VuOGgwTWMyNmJOSmU4THp6WFcKM09HS0VRSWhBSW9kRTFrbEJ6V1o3c1ljcUxkcVJ6Y093czFzTUxqbksxNmZkcGhKdzk5bgotLS0tLUVORCBDRVJUSUZJQ0FURSBSRVFVRVNULS0tLS0K signerName: kubernetes.io/kubelet-serving usages: - digital signature - server auth username: system:node:ip-10-0-140-95.ec2.internal status: certificate: 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 conditions: - lastTransitionTime: "2026-04-20T10:01:15Z" lastUpdateTime: "2026-04-20T10:01:15Z" message: This CSR was approved by the Node CSR Approver (cluster-machine-approver) reason: NodeCSRApprove status: "True" type: Approved