Difference between revisions of "Rbac.authorization.kubernetes.io"
Jump to navigation
Jump to search
(Created page with "{{lc}} apiVersion: rbac.authorization.k8s.io/v1 kind: ClusterRole metadata: annotations: rbac.authorization.kubernetes.io/autoupdate: "true" name: view-...") |
|||
Line 4: | Line 4: | ||
kind: ClusterRole | kind: ClusterRole | ||
metadata: | metadata: | ||
− | annotations: | + | [[annotations:]] |
[[rbac.authorization.kubernetes.io]]/autoupdate: "true" | [[rbac.authorization.kubernetes.io]]/autoupdate: "true" | ||
name: view-aws | name: view-aws |
Revision as of 12:05, 31 October 2023
apiVersion: rbac.authorization.k8s.io/v1 kind: ClusterRole metadata: annotations: rbac.authorization.kubernetes.io/autoupdate: "true" name: view-aws rules: - apiGroups: - '*' resources: - nodes - namespaces - pods - events verbs: - get - list - apiGroups: - apps resources: - deployments - daemonsets - statefulsets - replicasets verbs: - get - list - apiGroups: - batch resources: - jobs verbs: - get - list
Kubernetes RBAC kubectl auth, kubectl auth can-i, kubectl auth reconcile
kubectl create [ role | clusterrole | clusterrolebinding
| rolebinding | serviceaccount ], groups:
, Kubernetes RBAC good practices, kube2iam
, K8s Cluster roles, rbac.authorization.k8s.io
, system:
Advertising: