Obtain, revoke, purge, or recover kubeconfig credentials to control cluster access securely.
Operations
Container Service for Kubernetes ACK signs and issues kubeconfig credentials containing identity information to Alibaba Cloud accounts, Resource Access Management (RAM) users, or RAM roles for cluster access.
Under the shared responsibility model, you are responsible for maintaining kubeconfig credentials. Keep credentials available and valid to prevent security risks from leaks.
|
Operation |
Description |
References |
|
Obtain a kubeconfig file |
Obtain a kubeconfig file to connect to a cluster over the Internet or an internal-facing network. To reduce security risks, prioritize using a temporary kubeconfig file.temporary kubeconfig file. |
Obtain a cluster kubeconfig and connect to the cluster using kubectl |
|
Revoke a kubeconfig file |
Invalidates the credentials of a RAM user or role. A new kubeconfig file and authorization binding are generated. |
|
|
Purge a kubeconfig file |
|
|
|
Recover a kubeconfig file |
Use the kubeconfig recycle bin to recover only kubeconfig files that were purged within the last 30 days. |