RoleBinding and ClusterRoleBinding
To bind a role to “User”, “Group”, or “ServiceAccount”
I below example, we will give pod read/list access to service account mysvcacc
kubectl create rolebinding mysvcacc --role=myaccrole --serviceaccount=default:mysvcacc --dry-run=client -o yamlapiVersion: rbac.authorization.k8s.io/v1
kind: RoleBinding
metadata:
creationTimestamp: null
name: mysvcacc
roleRef:
apiGroup: rbac.authorization.k8s.io
kind: Role
name: myaccrole
subjects:
- kind: ServiceAccount
name: mysvcacc
namespace: default