Difference between revisions of "Kubectl create clusterrole"
Jump to navigation
Jump to search
Line 1: | Line 1: | ||
{{lc}} | {{lc}} | ||
+ | |||
+ | |||
+ | apiVersion: rbac.authorization.k8s.io/v1 | ||
+ | [[kind: ClusterRole]] | ||
+ | metadata: | ||
+ | name: cluster-read-only-role | ||
+ | rules: | ||
+ | - apiGroups: ["*"] | ||
+ | resources: ["*"] | ||
+ | verbs: ["get","watch","list"] | ||
+ | - nonResourceURLs: | ||
+ | - /metrics | ||
+ | verbs: | ||
+ | - get | ||
== Related == | == Related == |
Revision as of 11:52, 31 October 2023
apiVersion: rbac.authorization.k8s.io/v1 kind: ClusterRole metadata: name: cluster-read-only-role rules: - apiGroups: ["*"] resources: ["*"] verbs: ["get","watch","list"] - nonResourceURLs: - /metrics verbs: - get
Related
See also
- Kubernetes roles,
kubectl get [ roles | clusterroles | clusterrolebindings ], kubectl create rolebinding
, K8s Cluster roles - Kubernetes RBAC
kubectl auth, kubectl auth can-i, kubectl auth reconcile
kubectl create [ role | clusterrole | clusterrolebinding
|rolebinding | serviceaccount ], groups:
, Kubernetes RBAC good practices,kube2iam
, K8s Cluster roles,rbac.authorization.k8s.io
,system:
Advertising: