Difference between revisions of "Kubernetes RBAC"
Jump to navigation
Jump to search
↑ https://www.mirantis.com/blog/whats-new-kubernetes-1-6-focus-stability/
Tags: Mobile web edit, Mobile edit |
|||
Line 22: | Line 22: | ||
== Related terms == | == Related terms == | ||
− | * | + | * [[Kubernetes tokens]] |
* [[Attribute-based access control (ABAC)]] | * [[Attribute-based access control (ABAC)]] | ||
* <code>[[kubectl get role]]</code> | * <code>[[kubectl get role]]</code> | ||
* [[CKA 1.23]]: [[Manage role based access control (RBAC)]] | * [[CKA 1.23]]: [[Manage role based access control (RBAC)]] | ||
− | |||
* <code>[[kubectl create serviceaccount]]</code> | * <code>[[kubectl create serviceaccount]]</code> | ||
* [[ACK]] | * [[ACK]] |
Revision as of 05:25, 10 March 2023
Kubernetes RBAC uses the rbac.authorization.k8s.io
API Group, GA since Kubernetes 1.8 (Sep 2017)
https://kubernetes.io/docs/reference/access-authn-authz/rbac/
kubectl create role
kubectl create clusterrole
kubectl create rolebinding
kubectl create clusterrolebinding
Contents
Roles
https://kubernetes.io/docs/reference/access-authn-authz/rbac/#user-facing-roles
Review https://medium.com/codex/how-to-provide-access-to-aws-eks-for-sso-users-via-aws-sso-to-view-and-manage-the-cluster-17e2acfd6a35 for screenshoots of AWS EKS console depending of different roles.
Related terms
- Kubernetes tokens
- Attribute-based access control (ABAC)
kubectl get role
- CKA 1.23: Manage role based access control (RBAC)
kubectl create serviceaccount
- ACK
- Amazon EKS authorization
Activities
- Learn the differences between
Role
andClusterRole
: https://kubernetes.io/docs/reference/access-authn-authz/rbac/#role-and-clusterrole
News
- March 2017 Kubernetes 1.6 [1]
See also
- Kubernetes roles,
kubectl get [ roles | clusterroles | clusterrolebindings ], kubectl create rolebinding
, K8s Cluster roles kubectl auth [ can-i | reconcile ]
- Kubernetes RBAC
kubectl auth, kubectl auth can-i, kubectl auth reconcile
kubectl create [ role | clusterrole | clusterrolebinding
|rolebinding | serviceaccount ], groups:
, Kubernetes RBAC good practices,kube2iam
, K8s Cluster roles,rbac.authorization.k8s.io
,system:
- RBAC, ABAC, Kubernetes RBAC, ArgoCD RBAC
Advertising: