{"repo":"kubernetes-sigs/aws-iam-authenticator","free":true,"listed":false,"github":"https://github.com/kubernetes-sigs/aws-iam-authenticator","clone":"git clone https://github.com/kubernetes-sigs/aws-iam-authenticator.git","description":"A tool to use AWS IAM credentials to authenticate to a Kubernetes cluster","language":"Go","stars":2332,"topics":["kubernetes","iam","aws","auth","k8s-sig-aws"],"license":"Apache-2.0","category":"auth-billing-email","readme_excerpt":"AWS IAM Authenticator for Kubernetes A tool to use AWS IAM credentials to authenticate to a Kubernetes cluster. The initial work on this tool was driven by Heptio. The project receives contributions from multiple community engineers and is currently maintained by Heptio and Amazon EKS OSS Engineers. Table of Contents - Why do I want this? - How do I use it? - Kops Usage - How does it work? - What is a cluster ID? - Specifying Credentials & Using AWS Profiles - API Authorization from Outside a Cluster - Troubleshooting - Full Configuration Format - Development - Community, discussion, contribution, and support Why do I want this? If you are an administrator running a Kubernetes cluster on AWS, you already need to manage AWS IAM credentials to provision and update the cluster. By using AWS IAM Authenticator for Kubernetes, you avoid having to manage a separate credential for Kubernetes access. AWS IAM also provides a number of nice properties such as an out of band audit trail (via CloudTrail) and 2FA/MFA enforcement. If you are building a Kubernetes installer on AWS, AWS IAM Authenticator for Kubernetes can simplify your bootstrap process. You won't need to somehow smuggle your initial admin credential securely out of your newly installed cluster. Instead, you can create a dedicated KubernetesAdmin role at cluster provisioning time and set up Authenticator to allow cluster administrator logins. How do I use it? Assuming you have a cluster running in AWS and you want to add AWS","default_branch":null,"files":null,"tree":[],"storefront":"/r/kubernetes-sigs","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/kubernetes-sigs/aws-iam-authenticator/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}