mirror of https://github.com/istio/istio.io.git
egress tls origination - clarify required RBAC (#11804)
Signed-off-by: Faseela K <faseela.k@est.tech> Signed-off-by: Faseela K <faseela.k@est.tech>
This commit is contained in:
parent
e057ecc45f
commit
13da430536
|
@ -238,7 +238,7 @@ Follow [these steps](/docs/tasks/traffic-management/egress/egress-gateway-tls-or
|
|||
1. Create required `RBAC` to make sure the secret created in the above step is accessible to the client pod, which is `sleep` in this case.
|
||||
|
||||
{{< text bash >}}
|
||||
$ kubectl create role client-credential-role --resource=secret --verb=get,list,watch
|
||||
$ kubectl create role client-credential-role --resource=secret --verb=list
|
||||
$ kubectl create rolebinding client-credential-role-binding --role=client-credential-role --serviceaccount=default:sleep
|
||||
{{< /text >}}
|
||||
|
||||
|
|
|
@ -129,7 +129,7 @@ kubectl create secret generic client-credential --from-file=tls.key=client.examp
|
|||
}
|
||||
|
||||
snip_configure_the_client_sleep_pod_2() {
|
||||
kubectl create role client-credential-role --resource=secret --verb=get,list,watch
|
||||
kubectl create role client-credential-role --resource=secret --verb=list
|
||||
kubectl create rolebinding client-credential-role-binding --role=client-credential-role --serviceaccount=default:sleep
|
||||
}
|
||||
|
||||
|
|
Loading…
Reference in New Issue