|
|
|
|
|
by blakesterz
1700 days ago
|
|
"... a user who can create or update ingress objects, can use the custom snippets feature to obtain all secrets in the cluster." I'm not a Kubernetes guy, so I'm curious, how often is there a user with only those permissions? Is it common to have a user that can create/update and then doesn't already have some kind of other access to everything else? I don't know much about Kubernetes permissions. (I also just learned that the word Kubernetes is in the default Chrome spell checker thing, which was sure helpful in writing this comment!) |
|