相关疑难解决方法(0)

Kubernetes RBAC无法升级连接:Forbidden(user = system:anonymous,verb = create,resource = nodes,subresource = proxy)

我在运行RBAC的情况下运行Kubernetes 1.6.2.我创建了一个kube-admin具有以下群集角色绑定的用户

kind: ClusterRoleBinding apiVersion: rbac.authorization.k8s.io/v1beta1 metadata: name: k8s-admin subjects: - kind: User name: kube-admin apiGroup: rbac.authorization.k8s.io roleRef: kind: ClusterRole name: cluster-admin apiGroup: rbac.authorization.k8s.io

当我尝试kubectl exec进入正在运行的pod时,我收到以下错误.

kubectl -n kube-system exec -it kubernetes-dashboard-2396447444-1t9jk -- /bin/bash error: unable to upgrade connection: Forbidden (user=system:anonymous, verb=create, resource=nodes, subresource=proxy)

我的猜测是我错过了一个ClusterRoleBinding参考,我错过了哪个角色?

kubernetes kubectl

4
推荐指数
1
解决办法
3935
查看次数

标签 统计

kubectl ×1

kubernetes ×1