--- apiVersion: certificates.k8s.io/v1 kind: CertificateSigningRequest metadata: creationTimestamp: "2026-06-09T13:27:11Z" generateName: csr- managedFields: - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:certificate: {} manager: kube-controller-manager operation: Update subresource: status time: "2026-06-09T13:27:11Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:metadata: f:generateName: {} manager: ovnkube operation: Update time: "2026-06-09T13:27:11Z" - apiVersion: certificates.k8s.io/v1 fieldsType: FieldsV1 fieldsV1: f:status: f:conditions: .: {} k:{"type":"Approved"}: .: {} f:lastTransitionTime: {} f:lastUpdateTime: {} f:message: {} f:reason: {} f:status: {} f:type: {} manager: ovnkube-identity operation: Update subresource: approval time: "2026-06-09T13:27:11Z" name: csr-xflg2 resourceVersion: "7055" uid: 4dfdeb88-8fdd-4d3d-9a54-9e662010edae spec: expirationSeconds: 86400 extra: authentication.kubernetes.io/credential-id: - X509SHA256=944eadaaf02a7a01300f20603f30b09861a1f427d0b45d86741ba80e34203c1d groups: - system:nodes - system:authenticated request: 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 signerName: kubernetes.io/kube-apiserver-client usages: - digital signature - client auth username: system:node:ip-10-0-142-95.ec2.internal status: certificate: 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 conditions: - lastTransitionTime: "2026-06-09T13:27:11Z" lastUpdateTime: "2026-06-09T13:27:11Z" message: Auto-approved CSR "csr-xflg2" reason: AutoApproved status: "True" type: Approved