This commit is contained in:
Sean Knox 2018-08-23 16:02:55 -07:00
Родитель c3c06a44cf
Коммит 652ebc6296
Не найден ключ, соответствующий данной подписи
Идентификатор ключа GPG: 4C461E0C1242AF66
2 изменённых файлов: 5 добавлений и 5 удалений

Просмотреть файл

@ -9,7 +9,7 @@ kube-advisor is a Go application that searches your cluster for Deployments, Sta
Just run the pod by itself:
```
$ kubectl run --rm -i -t kube-resource-checker --image=seanknox/kube-advisor:latest --restart=Never
$ kubectl run --rm -i -t kube-advisor --image=seanknox/kube-advisor:latest --restart=Never
```
## Running in a Kubernetes cluster with RBAC enabled
@ -22,7 +22,7 @@ $ kubectl apply -f https://raw.githubusercontent.com/Azure/kube-advisor/master/s
2. Run the pod:
```
$ kubectl run --rm -i -t kube-resource-checker --image=seanknox/kube-advisor:latest --restart=Never --overrides="{ \"apiVersion\": \"v1\", \"spec\": { \"serviceAccountName\": \"kube-resource-checker\" } }"
$ kubectl run --rm -i -t kube-advisor --image=seanknox/kube-advisor:latest --restart=Never --overrides="{ \"apiVersion\": \"v1\", \"spec\": { \"serviceAccountName\": \"kube-advisor\" } }"
```
3. If desired, delete the service account and cluster role binding:

Просмотреть файл

@ -1,19 +1,19 @@
apiVersion: v1
kind: ServiceAccount
metadata:
name: kube-resource-checker
name: kube-advisor
namespace: default
---
apiVersion: rbac.authorization.k8s.io/v1
kind: ClusterRoleBinding
metadata:
name: kube-resource-checker
name: kube-advisor
roleRef:
apiGroup: rbac.authorization.k8s.io
kind: ClusterRole
name: cluster-admin
subjects:
- kind: ServiceAccount
name: kube-resource-checker
name: kube-advisor
namespace: default