Master Role-Based Access Control (RBAC), service accounts, and security best practices for production Kubernetes clusters.
ServiceAccounts provide identity for pods to interact with the API.
kubectl create serviceaccount app-sakubectl get serviceaccount app-sa -o yamlkubectl describe serviceaccount app-saServiceAccounts are pod identities. Each namespace has a default ServiceAccount. Create custom ones for specific permissions.
ServiceAccount created. Shows associated secret for API authentication token.