All Products
Search
Document Center

Enterprise Distributed Application Service:CreateK8sIngressRule

Last Updated:Aug 28, 2026

Creates an Ingress routing rule for a Kubernetes cluster managed by EDAS.

Try it now

Try this API in OpenAPI Explorer, no manual signing needed. Successful calls auto-generate SDK code matching your parameters. Download it with built-in credential security for local usage.Try this API in OpenAPI Explorer, no manual signing needed. Successful calls auto-generate SDK code matching your parameters. Download it with built-in credential security for local usage.

Test

RAM authorization

The table below describes the authorization required to call this API. You can define it in a Resource Access Management (RAM) policy. The table's columns are detailed below:

  • Action: The actions can be used in the Action element of RAM permission policy statements to grant permissions to perform the operation.

  • API: The API that you can call to perform the action.

  • Access level: The predefined level of access granted for each API. Valid values: create, list, get, update, and delete.

  • Resource type: The type of the resource that supports authorization to perform the action. It indicates if the action supports resource-level permission. The specified resource must be compatible with the action. Otherwise, the policy will be ineffective.

    • For APIs with resource-level permissions, required resource types are marked with an asterisk (*). Specify the corresponding Alibaba Cloud Resource Name (ARN) in the Resource element of the policy.

    • For APIs without resource-level permissions, it is shown as All Resources. Use an asterisk (*) in the Resource element of the policy.

  • Condition key: The condition keys defined by the service. The key allows for granular control, applying to either actions alone or actions associated with specific resources. In addition to service-specific condition keys, Alibaba Cloud provides a set of common condition keys applicable across all RAM-supported services.

  • Dependent action: The dependent actions required to run the action. To complete the action, the RAM user or the RAM role must have the permissions to perform all dependent actions.

Action

Access level

Resource type

Condition key

Dependent action

edas:ManageCluster

create

*Cluster

acs:edas:{#regionId}:{#accountId}:namespace/{#NameSpaceId}/cluster/{#ClusterId}

None None

Request syntax

POST /pop/v5/k8s/acs/k8s_ingress HTTP/1.1

Request parameters

Parameter

Type

Required

Description

Example

ClusterId

string

Yes

The ID of the Kubernetes cluster.

5b2b4ab4-efbc-4a81-9c45-xxxxxxxxxxxxx

Namespace

string

Yes

The namespace of the Kubernetes cluster.

default

Name

string

Yes

The Ingress name. Supports lowercase letters, digits, and hyphens (-). Must start with a lowercase letter and cannot end with a hyphen. Maximum length: 63 characters.

my-ingress-rule

IngressConf

string

No

The Ingress routing rules. Specify a JSON string in the following format:

{
  "rules": [
    {
      "host": "abc.com",
      "secretName": "tls-secret",
      "paths": [
        {
          "path": "/path",
          "backend": {
            "servicePort": 80,
            "serviceName": "xxx"
          }
        }
      ]
    }
  ]
}

Parameter description:

  • rules: the routing rules.

  • host: the target domain name.

  • secretName: the Secret that stores the TLS certificate. Required for HTTPS.

  • paths: the access paths.

  • path: the access path.

  • backend: the backend service. Specify a service created in the EDAS console.

  • serviceName: the backend service name.

  • servicePort: the backend service port.

{"rules":[{"host":"abc.com","secretName":"tls-secret","paths":[{"path":"/path","backend":{"servicePort":80,"serviceName":"xxx"}}]}]}

Annotations

string

No

The Ingress annotations.

{\"alb.ingress.kubernetes.io/rewrite-target\":\"/consumer-echo/test\"}

Labels

string

No

The Ingress labels.

{\"test-labels\":\"test-value\"}

Response elements

Element

Type

Description

Example

object

The response object.

Code

integer

The HTTP status code.

200

Message

string

The response message.

success

Examples

Success response

JSON format

{
  "Code": 200,
  "Message": "success"
}

Error codes

HTTP status code

Error code

Error message

Description

500 Edas.errorcode.PermissionDenied.message You are not authorized to perform the operation. No permissions

See Error CodesError Codes for a complete list.

Release notes

See Release NotesRelease Notes for a complete list.