Difference between revisions of "Rbac.authorization.kubernetes.io"
Jump to navigation
Jump to search
Line 7: | Line 7: | ||
[[rbac.authorization.kubernetes.io]]/autoupdate: "true" | [[rbac.authorization.kubernetes.io]]/autoupdate: "true" | ||
name: view-aws | name: view-aws | ||
− | rules: | + | [[rules:]] |
- apiGroups: | - apiGroups: | ||
- '*' | - '*' |
Revision as of 12:06, 31 October 2023
apiVersion: rbac.authorization.k8s.io/v1 kind: ClusterRole metadata: annotations: rbac.authorization.kubernetes.io/autoupdate: "true" name: view-aws rules: - apiGroups: - '*' resources: - nodes - namespaces - pods - events verbs: - get - list - apiGroups: - apps resources: - deployments - daemonsets - statefulsets - replicasets verbs: - get - list - apiGroups: - batch resources: - jobs verbs: - get - list
Kubernetes RBAC kubectl auth, kubectl auth can-i, kubectl auth reconcile
kubectl create [ role | clusterrole | clusterrolebinding
| rolebinding | serviceaccount ], groups:
, Kubernetes RBAC good practices, kube2iam
, K8s Cluster roles, rbac.authorization.k8s.io
, system:
Advertising: