Master Role-Based Access Control (RBAC), service accounts, and security best practices for production Kubernetes clusters.
ServiceAccounts provide identity for pods to interact with the API.
kubectl create serviceaccount app-sakubectl get serviceaccount app-sa -o yamlkubectl describe serviceaccount app-saServiceAccounts are pod identities.
Each namespace has a default ServiceAccount.
Create custom ones for specific permissions.
ServiceAccount created.
Shows associated secret for API authentication token.