DivXPro
- 可以用 serviceaccount token: https://kubernetes.io/docs/tasks/configure-pod-container/configure-service-account/
apiVersion: v1
clusters:
- cluster:
certificate-authority-data: ********
server: https://lb.kubesphere.local:6443
name: cluster.local
contexts:
- context:
cluster: cluster.local
user: kubernetes-admin
name: kubernetes-admin@cluster.local
current-context: kubernetes-admin@cluster.local
kind: Config
preferences: {}
users:
- name: kubernetes-admin
user:
token: ********
2. client 证书可以直接用CA证书去签发,或者使用 K8s 中的 CSR 去签发
apiVersion: v1
clusters:
- cluster:
certificate-authority-data: ********
server: https://lb.kubesphere.local:6443
name: cluster.local
contexts:
- context:
cluster: cluster.local
user: kubernetes-admin
name: kubernetes-admin@cluster.local
current-context: kubernetes-admin@cluster.local
kind: Config
preferences: {}
users:
- name: kubernetes-admin
user:
client-certificate-data: ********
client-key-data: ********