Difference between revisions of "Kubectl get serviceaccounts"
Jump to navigation
Jump to search
(29 intermediate revisions by 6 users not shown) | |||
Line 1: | Line 1: | ||
{{lc}} | {{lc}} | ||
− | |||
+ | [[kubectl get serviceaccounts -A]] | ||
+ | [[kubectl get]] serviceaccounts | ||
+ | [[kubectl get sa -n kube-system]] | ||
+ | |||
+ | kubectl get [[serviceaccounts]] | ||
+ | |||
+ | |||
+ | kubectl get serviceaccounts -n your-namespace | ||
+ | NAME SECRETS AGE | ||
+ | default 1 14d | ||
+ | |||
+ | |||
+ | == [[Prometheus]] serviceaccounts == | ||
+ | kubectl get serviceaccounts | ||
+ | NAME SECRETS AGE | ||
+ | default 1 9h | ||
+ | myprometheus-alertmanager 1 8h | ||
+ | myprometheus-kube-state-metrics 1 8h | ||
+ | myprometheus-node-exporter 1 8h | ||
+ | myprometheus-pushgateway 1 8h | ||
+ | myprometheus-server 1 8h | ||
+ | |||
+ | == EKS == | ||
+ | === [[kubectl get serviceaccounts -n kube-system]] === | ||
+ | NAME SECRETS AGE | ||
+ | attachdetach-controller 1 9h | ||
+ | aws-cloud-provider 1 9h | ||
+ | aws-node 1 9h | ||
+ | [[certificate-controller]] 1 9h | ||
+ | clusterrole-aggregation-controller 1 9h | ||
+ | coredns 1 9h | ||
+ | cronjob-controller 1 9h | ||
+ | daemon-set-controller 1 9h | ||
+ | default 1 9h | ||
+ | deployment-controller 1 9h | ||
+ | disruption-controller 1 9h | ||
+ | ebs-csi-controller-sa 1 38m | ||
+ | ebs-csi-node-sa 1 38m | ||
+ | eks-vpc-resource-controller 1 9h | ||
+ | endpoint-controller 1 9h | ||
+ | endpointslice-controller 1 9h | ||
+ | endpointslicemirroring-controller 1 9h | ||
+ | ephemeral-volume-controller 1 9h | ||
+ | expand-controller 1 9h | ||
+ | generic-garbage-collector 1 9h | ||
+ | horizontal-pod-autoscaler 1 9h | ||
+ | job-controller 1 9h | ||
+ | kube-proxy 1 9h | ||
+ | namespace-controller 1 9h | ||
+ | node-controller 1 9h | ||
+ | persistent-volume-binder 1 9h | ||
+ | pod-garbage-collector 1 9h | ||
+ | pv-protection-controller 1 9h | ||
+ | pvc-protection-controller 1 9h | ||
+ | replicaset-controller 1 9h | ||
+ | replication-controller 1 9h | ||
+ | resourcequota-controller 1 9h | ||
+ | root-ca-cert-publisher 1 9h | ||
+ | service-account-controller 1 9h | ||
+ | service-controller 1 9h | ||
+ | statefulset-controller 1 9h | ||
+ | tagging-controller 1 9h | ||
+ | ttl-after-finished-controller 1 9h | ||
+ | ttl-controller 1 9h | ||
+ | |||
+ | === Old: [[kubectl get serviceaccounts -n kube-system]] === | ||
NAME SECRETS AGE | NAME SECRETS AGE | ||
[[attachdetach-controller]] 1 6d20h | [[attachdetach-controller]] 1 6d20h | ||
Line 42: | Line 107: | ||
[[vpc-resource-controller]] 1 6d20h | [[vpc-resource-controller]] 1 6d20h | ||
− | + | == GKE == | |
+ | NAME SECRETS AGE | ||
+ | attachdetach-controller 1 236d | ||
+ | certificate-controller 1 236d | ||
+ | cloud-provider 1 236d | ||
+ | clusterrole-aggregation-controller 1 236d | ||
+ | cronjob-controller 1 236d | ||
+ | daemon-set-controller 1 236d | ||
+ | default 1 236d | ||
+ | deployment-controller 1 236d | ||
+ | disruption-controller 1 236d | ||
+ | endpoint-controller 1 236d | ||
+ | endpointslice-controller 1 236d | ||
+ | endpointslicemirroring-controller 1 236d | ||
+ | ephemeral-volume-controller 1 236d | ||
+ | event-exporter-sa 1 236d | ||
+ | expand-controller 1 236d | ||
+ | [[fluentbit-gke]] 1 236d | ||
+ | generic-garbage-collector 1 236d | ||
+ | [[gke-metrics-agent]] 1 236d | ||
+ | job-controller 1 236d | ||
+ | konnectivity-agent 1 236d | ||
+ | konnectivity-agent-cpha 1 236d | ||
+ | [[kube-dns]] 1 236d | ||
+ | kube-dns-autoscaler 1 236d | ||
+ | [[kube-proxy]] 1 236d | ||
+ | metadata-proxy 1 236d | ||
+ | [[metrics-server]] 1 236d | ||
+ | namespace-controller 1 236d | ||
+ | node-controller 1 236d | ||
+ | pdcsi-node-sa 1 236d | ||
+ | persistent-volume-binder 1 236d | ||
+ | pod-garbage-collector 1 236d | ||
+ | pv-protection-controller 1 236d | ||
+ | pvc-protection-controller 1 236d | ||
+ | replicaset-controller 1 236d | ||
+ | replication-controller 1 236d | ||
+ | resourcequota-controller 1 236d | ||
+ | root-ca-cert-publisher 1 236d | ||
+ | service-account-controller 1 236d | ||
+ | service-controller 1 236d | ||
+ | statefulset-controller 1 236d | ||
+ | ttl-after-finished-controller 1 236d | ||
+ | ttl-controller 1 236d | ||
== Related == | == Related == | ||
* <code>[[kubectl describe role]]</code> | * <code>[[kubectl describe role]]</code> | ||
− | * [[ | + | * <code>[[kubectl describe sa]]</code> |
+ | * [[Kubernetes controller]] | ||
+ | * [[Service accounts]] | ||
+ | * [[Kubernetes service accounts]] | ||
+ | * <code>[[cert-manager]]</code> | ||
+ | * <code>[[calico-apiserver]]</code> | ||
+ | * <code>[[calico-kube-controllers]]</code> | ||
+ | * <code>[[calico-node]]</code> | ||
+ | * <code>[[calico-typha]]</code> | ||
+ | * <code>[[aws-for-fluent-bit]]</code> | ||
+ | * <code>[[aws-load-balancer-controller]]</code> | ||
== See also == | == See also == | ||
+ | * {{Kubernetes service account}} | ||
* {{Kubernetes Authentication}} | * {{Kubernetes Authentication}} | ||
[[Category:K8s]] | [[Category:K8s]] |
Latest revision as of 13:29, 9 August 2023
kubectl get serviceaccounts -A kubectl get serviceaccounts kubectl get sa -n kube-system
kubectl get serviceaccounts
kubectl get serviceaccounts -n your-namespace NAME SECRETS AGE default 1 14d
Contents
Prometheus serviceaccounts[edit]
kubectl get serviceaccounts NAME SECRETS AGE default 1 9h myprometheus-alertmanager 1 8h myprometheus-kube-state-metrics 1 8h myprometheus-node-exporter 1 8h myprometheus-pushgateway 1 8h myprometheus-server 1 8h
EKS[edit]
kubectl get serviceaccounts -n kube-system[edit]
NAME SECRETS AGE attachdetach-controller 1 9h aws-cloud-provider 1 9h aws-node 1 9h certificate-controller 1 9h clusterrole-aggregation-controller 1 9h coredns 1 9h cronjob-controller 1 9h daemon-set-controller 1 9h default 1 9h deployment-controller 1 9h disruption-controller 1 9h ebs-csi-controller-sa 1 38m ebs-csi-node-sa 1 38m eks-vpc-resource-controller 1 9h endpoint-controller 1 9h endpointslice-controller 1 9h endpointslicemirroring-controller 1 9h ephemeral-volume-controller 1 9h expand-controller 1 9h generic-garbage-collector 1 9h horizontal-pod-autoscaler 1 9h job-controller 1 9h kube-proxy 1 9h namespace-controller 1 9h node-controller 1 9h persistent-volume-binder 1 9h pod-garbage-collector 1 9h pv-protection-controller 1 9h pvc-protection-controller 1 9h replicaset-controller 1 9h replication-controller 1 9h resourcequota-controller 1 9h root-ca-cert-publisher 1 9h service-account-controller 1 9h service-controller 1 9h statefulset-controller 1 9h tagging-controller 1 9h ttl-after-finished-controller 1 9h ttl-controller 1 9h
Old: kubectl get serviceaccounts -n kube-system[edit]
NAME SECRETS AGE attachdetach-controller 1 6d20h aws-cloud-provider 1 6d20h aws-node 1 6d20h certificate-controller 1 6d20h clusterrole-aggregation-controller 1 6d20h coredns 1 6d20h cronjob-controller 1 6d20h daemon-set-controller 1 6d20h default 1 6d20h deployment-controller 1 6d20h disruption-controller 1 6d20h eks-vpc-resource-controller 1 6d20h endpoint-controller 1 6d20h endpointslice-controller 1 6d20h endpointslicemirroring-controller 1 6d20h ephemeral-volume-controller 1 6d20h expand-controller 1 6d20h generic-garbage-collector 1 6d20h horizontal-pod-autoscaler 1 6d20h job-controller 1 6d20h kube-proxy 1 6d20h namespace-controller 1 6d20h node-controller 1 6d20h persistent-volume-binder 1 6d20h pod-garbage-collector 1 6d20h pv-protection-controller 1 6d20h pvc-protection-controller 1 6d20h replicaset-controller 1 6d20h replication-controller 1 6d20h resourcequota-controller 1 6d20h root-ca-cert-publisher 1 6d20h service-account-controller 1 6d20h service-controller 1 6d20h statefulset-controller 1 6d20h tiller 1 2m23s ttl-after-finished-controller 1 6d20h ttl-controller 1 6d20h vpc-resource-controller 1 6d20h
GKE[edit]
NAME SECRETS AGE attachdetach-controller 1 236d certificate-controller 1 236d cloud-provider 1 236d clusterrole-aggregation-controller 1 236d cronjob-controller 1 236d daemon-set-controller 1 236d default 1 236d deployment-controller 1 236d disruption-controller 1 236d endpoint-controller 1 236d endpointslice-controller 1 236d endpointslicemirroring-controller 1 236d ephemeral-volume-controller 1 236d event-exporter-sa 1 236d expand-controller 1 236d fluentbit-gke 1 236d generic-garbage-collector 1 236d gke-metrics-agent 1 236d job-controller 1 236d konnectivity-agent 1 236d konnectivity-agent-cpha 1 236d kube-dns 1 236d kube-dns-autoscaler 1 236d kube-proxy 1 236d metadata-proxy 1 236d metrics-server 1 236d namespace-controller 1 236d node-controller 1 236d pdcsi-node-sa 1 236d persistent-volume-binder 1 236d pod-garbage-collector 1 236d pv-protection-controller 1 236d pvc-protection-controller 1 236d replicaset-controller 1 236d replication-controller 1 236d resourcequota-controller 1 236d root-ca-cert-publisher 1 236d service-account-controller 1 236d service-controller 1 236d statefulset-controller 1 236d ttl-after-finished-controller 1 236d ttl-controller 1 236d
Related[edit]
kubectl describe role
kubectl describe sa
- Kubernetes controller
- Service accounts
- Kubernetes service accounts
cert-manager
calico-apiserver
calico-kube-controllers
calico-node
calico-typha
aws-for-fluent-bit
aws-load-balancer-controller
See also[edit]
- Kubernetes service account, ServiceAccount:,
kubectl get serviceaccounts, kubectl create serviceaccount, kubectl describe serviceaccount
,kubernetes.io/service-account-token
, Kubernetes users, Kubernetes groups, Kubernetes roles,ServiceAccountTokenNodeBinding
- Kubernetes Authentication,
kubectl create serviceaccount, kubectl get serviceaccounts, CertificateSigningRequest, aws-auth
, bearer tokens, EKS Authentication
Advertising: