diff --git a/ee/ucp/admin/configure/configure-rbac-kube.md b/ee/ucp/admin/configure/configure-rbac-kube.md index e1f280afee..03e90ed75a 100644 --- a/ee/ucp/admin/configure/configure-rbac-kube.md +++ b/ee/ucp/admin/configure/configure-rbac-kube.md @@ -25,12 +25,12 @@ To create a Kuberenetes role in the UCP web interface: 2. Navigate to the **Access Control**. 3. In the lefthand menu, select **Roles**. -![Kubernetes Grants in UCP](/ee/ucp/images/kube-rbac-roles.png) + ![Kubernetes Grants in UCP](/ee/ucp/images/kube-rbac-roles.png) 4. Select the **Kubernetes** tab at the top of the window. 5. Select **Create** to create a Kubernetes role object in the following dialog: -![Kubernetes Role Creation in UCP](/ee/ucp/images/kube-role-create.png) + ![Kubernetes Role Creation in UCP](/ee/ucp/images/kube-role-create.png) 6. Select a namespace from the **Namespace** dropdown list. Selecting a specific namespace creates a role for use in that namespace, but selecting all namespaces creates a `ClusterRole` where you can create rules for cluster-scoped Kubernetes resources as well as namespaced resources. 7. Provide the YAML for the role, either by entering it in the **Object YAML** editor or select **Click to upload a .yml file** to choose and upload a .yml file instead. @@ -50,12 +50,12 @@ To create a grant for a Kuberenetes role in the UCP web interface: 2. Navigate to the **Access Control**. 3. In the lefthand menu, select **Grants**. -![Kubernetes Grants in UCP](/ee/ucp/images/kube-rbac-grants.png) + ![Kubernetes Grants in UCP](/ee/ucp/images/kube-rbac-grants.png) 4. Select the **Kubernetes** tab at the top of the window. All grants to Kubernetes roles can be viewed in the Kubernetes tab. 5. Select **Create New Grant** to start the Create Role Binding wizard and create a new grant for a given user, team or service. -![Kubernetes Create Role Binding in UCP](../../images/kube-grant-wizard.png) + ![Kubernetes Create Role Binding in UCP](../../images/kube-grant-wizard.png) 6. Select the subject type. Your choices are: - **All Users** @@ -64,11 +64,11 @@ To create a grant for a Kuberenetes role in the UCP web interface: 7. To create a user role binding, select a username from the **Users** dropdown list then select **Next**. 8. Select a resource set for the subject. The **default** namespace is automatically selected. To use a different namespace, select the **Select Namespace** button next to the desired namespace. For `Cluster Role Binding`, slide the **Apply Role Binding to all namespaces** selector to the right. -![Kubernetes Create User Role Binding in UCP](/ee/ucp/images/kube-grant-rolebinding.png) + ![Kubernetes Create User Role Binding in UCP](/ee/ucp/images/kube-grant-rolebinding.png) 9. Select **Next** to continue. 10. Select the **Cluster Role** from the dropdown list. If you create a `ClusterRoleBinding` (by selecting **Apply Role Binding to all namespaces**) then you may only select ClusterRoles. If you select a specific namespace, you can choose any role from that namespace or any ClusterRole. -![Kubernetes Select Cluster Role in UCP](/ee/ucp/images/kube-grant-roleselect.png) + ![Kubernetes Select Cluster Role in UCP](/ee/ucp/images/kube-grant-roleselect.png) 11. Select **Create** to complete creating the grant.