Learn KOP - Controlled/Secure KubeCTL access - Rafay Product Documentation

Controlled Access

What Will You Do

In this part of the self-paced exercise, you will associate a role with a user based on the least privilege principle and verify scope of kubectl access for the user. The role association will ensure that the user's kubectl access is restricted based on their corporate identity. You will also configure kubectl settings to allow only web based access.


Step 1: Role Assignment

We will restrict the scope of the user to a particular namespace and will associate the Namespace Admin role to achieve the same.

Step 2: Configure KubeCTL settings

Step 3: Verify scope of KubeCTL access

Note