Difference between revisions of "System:"
Jump to navigation
Jump to search
Line 1: | Line 1: | ||
{{lc}} | {{lc}} | ||
+ | |||
+ | [[kubectl get clusterroles]] | grep system | ||
[[system:bootstrappers]] | [[system:bootstrappers]] | ||
− | |||
[[system:node]] | [[system:node]] | ||
[[system:nodes]] | [[system:nodes]] | ||
[[system:node-proxier]] | [[system:node-proxier]] | ||
− | |||
[[system:masters]] | [[system:masters]] | ||
− | |||
[[system:anonymous]] | [[system:anonymous]] | ||
− | |||
[[system:serviceaccount:]] | [[system:serviceaccount:]] | ||
[[system:serviceaccounts:]] | [[system:serviceaccounts:]] | ||
− | |||
[[system:kube-scheduler]] | [[system:kube-scheduler]] | ||
[[system:kube-dns]] | [[system:kube-dns]] | ||
[[system:volume-scheduler]] | [[system:volume-scheduler]] | ||
[[system:kube-controller-manager]] | [[system:kube-controller-manager]] | ||
− | |||
[[system:basic-user]] | [[system:basic-user]] | ||
[[system:dyscover]] | [[system:dyscover]] | ||
+ | |||
[[kube-system]] system::leader-locking-kube-controller-manager 2022-07-06T13:16:03Z | [[kube-system]] system::leader-locking-kube-controller-manager 2022-07-06T13:16:03Z |
Revision as of 08:43, 27 September 2023
kubectl get clusterroles | grep system system:bootstrappers system:node system:nodes system:node-proxier system:masters system:anonymous system:serviceaccount: system:serviceaccounts: system:kube-scheduler system:kube-dns system:volume-scheduler system:kube-controller-manager system:basic-user system:dyscover
kube-system system::leader-locking-kube-controller-manager 2022-07-06T13:16:03Z kube-system system::leader-locking-kube-scheduler 2022-07-06T13:16:03Z
system:controller:
https://kubernetes.io/docs/reference/access-authn-authz/rbac/#controller-roles
system:controller:attachdetach-controller system:controller:certificate-controller system:controller:clusterrole-aggregation-controller system:controller:cronjob-controller system:controller:daemon-set-controller system:controller:deployment-controller system:controller:disruption-controller system:controller:endpoint-controller system:controller:expand-controller system:controller:generic-garbage-collector system:controller:horizontal-pod-autoscaler system:controller:job-controller system:controller:namespace-controller system:controller:node-controller system:controller:persistent-volume-binder system:controller:pod-garbage-collector system:controller:pv-protection-controller system:controller:pvc-protection-controller system:controller:replicaset-controller system:controller:replication-controller system:controller:resourcequota-controller system:controller:root-ca-cert-publisher system:controller:route-controller system:controller:service-account-controller system:controller:service-controller system:controller:statefulset-controller system:controller:ttl-controller
ClusterRole
Activities
Related
eksctl create iamidentitymapping
kind: ClusterRole
- Terraform EKS module:
manage_aws_auth_configmap, aws_auth_roles, aws_auth_users
aws-auth
ConfigMap- groups:
kubectl get clusterroles
See also
- Kubernetes API Server,
kube-apiserver, system:bootstrappers, --event-ttl, snap info kube-apiserver
- Kubernetes RBAC
kubectl auth, kubectl auth can-i, kubectl auth reconcile
kubectl create [ role | clusterrole | clusterrolebinding
|rolebinding | serviceaccount ], groups:
, Kubernetes RBAC good practices,kube2iam
, K8s Cluster roles,rbac.authorization.k8s.io
,system:
Advertising: