EKS RBAC: An Approach and Strategy with Examples

EKS RBAC: An Approach and Strategy with Examples

November 21, 2021
Tags:
awseks

Shows an RBAC management approach and strategy. We cover ClusterRole, ClusterRoleBinding, Role, and RoleBinding.

The setup looks like this:

Users

User Description
test-admin Full access to all resources.
test-read-all Read access to all resources.
test-app1-dev-read Read access to app1 dev.
test-app2-dev-write Write access to app2 dev.
test-app2-owner Read access to all resources and full access to app2 for prod and dev.

Apps/Deployments

Deployment Namespace
web app1-dev
web app1-prod
web app2-dev
web app2-prod

Useful Commands

kubectl auth can-i get pods --all-namespaces
kubectl auth can-i '*' '*'
kubectl auth can-i create pods --all-namespaces
kubectl auth can-i create '*' '*'

Links:

Explore lesson as part of a learning path

Get full access to these great resources

All for less than the price of coffee a day

44 courses
286 lessons
46+ hours

Get started with BoltOps Learn now and get access to easy and powerful lessons

BoltOps Tools