Difference between revisions of "System:controller:"
Jump to navigation
Jump to search
(4 intermediate revisions by 3 users not shown) | |||
Line 2: | Line 2: | ||
* https://kubernetes.io/docs/reference/access-authn-authz/rbac/#controller-roles | * https://kubernetes.io/docs/reference/access-authn-authz/rbac/#controller-roles | ||
[[system:]]controller: | [[system:]]controller: | ||
+ | |||
+ | <pre> | ||
+ | system:controller:attachdetach-controller | ||
+ | system:controller:certificate-controller | ||
+ | system:controller:clusterrole-aggregation-controller | ||
+ | system:controller:cronjob-controller | ||
+ | system:controller:daemon-set-controller | ||
+ | system:controller:deployment-controller | ||
+ | system:controller:disruption-controller | ||
+ | system:controller:endpoint-controller | ||
+ | system:controller:expand-controller | ||
+ | system:controller:generic-garbage-collector | ||
+ | system:controller:horizontal-pod-autoscaler | ||
+ | system:controller:job-controller | ||
+ | system:controller:namespace-controller | ||
+ | system:controller:node-controller | ||
+ | system:controller:persistent-volume-binder | ||
+ | system:controller:pod-garbage-collector | ||
+ | system:controller:pv-protection-controller | ||
+ | system:controller:pvc-protection-controller | ||
+ | system:controller:replicaset-controller | ||
+ | system:controller:replication-controller | ||
+ | system:controller:resourcequota-controller | ||
+ | system:controller:root-ca-cert-publisher | ||
+ | system:controller:route-controller | ||
+ | system:controller:service-account-controller | ||
+ | system:controller:service-controller | ||
+ | system:controller:statefulset-controller | ||
+ | system:controller:ttl-controller | ||
+ | </pre> | ||
+ | |||
+ | |||
+ | [[system:]] | ||
+ | [[groups:]] | ||
+ | |||
+ | [[system:masters]] | ||
+ | |||
+ | {{system:}} | ||
+ | |||
+ | {{K8s RBAC}} |
Latest revision as of 17:38, 12 September 2023
system:controller:
system:controller:attachdetach-controller system:controller:certificate-controller system:controller:clusterrole-aggregation-controller system:controller:cronjob-controller system:controller:daemon-set-controller system:controller:deployment-controller system:controller:disruption-controller system:controller:endpoint-controller system:controller:expand-controller system:controller:generic-garbage-collector system:controller:horizontal-pod-autoscaler system:controller:job-controller system:controller:namespace-controller system:controller:node-controller system:controller:persistent-volume-binder system:controller:pod-garbage-collector system:controller:pv-protection-controller system:controller:pvc-protection-controller system:controller:replicaset-controller system:controller:replication-controller system:controller:resourcequota-controller system:controller:root-ca-cert-publisher system:controller:route-controller system:controller:service-account-controller system:controller:service-controller system:controller:statefulset-controller system:controller:ttl-controller
system: groups:
system:masters
system:, system:masters, system:controller:, system:anonymous, system:serviceaccount:, system:serviceaccounts:, system:bootstrappers, system:node, system:nodes
, kubectl get clusterroles
Kubernetes RBAC kubectl auth, kubectl auth can-i, kubectl auth reconcile
kubectl create [ role | clusterrole | clusterrolebinding
| rolebinding | serviceaccount ], groups:
, Kubernetes RBAC good practices, kube2iam
, K8s Cluster roles, rbac.authorization.k8s.io
, system:
Advertising: