Kubernetes User Operations

From NovaOrdis Knowledge Base
Jump to navigation Jump to search

External

Internal

Create a Normal User

kubectl config set-credentials alice --username=alice --password=somepassword

This command adds the user to .kube/config and kubectl will use basic HTTP authentication for these users.

Add a User via a Certificate

A user can authenticate against the Kubernetes cluster by being issued a certificate by the Kubernetes cluster and then present the certificate to the API call as the Certificate Header, or through kubectl.

TODO: https://kubernetes.io/docs/reference/access-authn-authz/certificate-signing-requests/#normal-user

TODO: https://kubernetes.io/docs/reference/access-authn-authz/authentication/#x509-client-certs

Add a User with Bearer Tokens

Static Token File

TODO: https://kubernetes.io/docs/reference/access-authn-authz/authentication/#static-token-file