본문 바로가기
Kubernetes

[ Kubernetes ] K8S 1.24 부터 service account 생성 및 token 생성

by 정윤재 2023. 12. 3.

만약 K8S 에서 service account 를 생성 하면 아래와 같이 

기본 설정으로 생성 된다. 

 

apiVersion: v1
clusters:
- cluster:
    certificate-authority-data: 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
    server: https://127.0.0.1:6443
  name: cluster.local
contexts:
- context:
    cluster: cluster.local
    user: kubernetes-admin
  name: kubernetes-admin@cluster.local
current-context: kubernetes-admin@cluster.local
kind: Config
preferences: {}
users:
- name: kubernetes-admin
  user:
    client-certificate-data: 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
    client-key-data: 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

 

그러면  외부 접속을 위해 Service Account 를 새로 생성 하려고 하면

어떻게 해야 할까?

 

나의 경우는 외부에서 접속을 위해 control plain 에서 신규 service account 를 생성 하였다. 

(role 은 관리자 권한이 필요하여 cluster-admin role  을 부여 하였다.)

 

아래가 해당 스크립트 내용이다.

 

ADMIN=test-admin
CONTEXT=test01
CLUSTER=cluster.local
kubectl create sa $ADMIN -n kube-system

cat <<EOF | kubectl apply -f -
apiVersion: v1
kind: Secret
metadata:
  name: $ADMIN-secret
  namespace: kube-system
  annotations:
    kubernetes.io/service-account.name: $ADMIN
type: kubernetes.io/service-account-token
EOF


kubectl create clusterrolebinding $ADMIN-rolebinding \
  --clusterrole=cluster-admin \
  --serviceaccount=kube-system:$ADMIN

TOKEN=`kubectl get secret -n kube-system $ADMIN-secret -ojsonpath={.data.token} | base64 -d`

kubectl config set-credentials $ADMIN --token="$TOKEN"

kubectl config set-context $CONTEXT --cluster=$CLUSTER --user=$ADMIN --namespace=kube-system

kubectl config use-context $CONTEXT

 

원래 K8S 1.23 버전까지는 service account 를 생성하면 token 이 자동 생성 되어

해당 token 으로 접속 할 수 있었지만 1.24 부터는 token 이 자동 생성 되지 않아서

위의 스크립트 처럼 secret 에서 token 을 뽑아와서 service account 생성 및

kubeconfig 설정을 해줘야 한다.

 

위와 같이 해주면 kubeconfig 에 자동으로 아래와 같이 service account 가 추가 된다.

apiVersion: v1
clusters:
- cluster:
    certificate-authority-data: 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
    server: https://127.0.0.1:6443
  name: cluster.local
contexts:
- context:
    cluster: cluster.local
    user: kubernetes-admin
  name: kubernetes-admin@cluster.local
- context:
    cluster: cluster.local
    namespace: kube-system
    user: test-admin
  name: test01
current-context: kubernetes-admin@cluster.local
kind: Config
preferences: {}
users:
- name: kubernetes-admin
  user:
    client-certificate-data: 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
    client-key-data: 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
- name: test-admin
  user:
    token: eyJhbGciOiJSUzI1NiIsImtpZCI6IjVzVTljMmRzbE11RzMzYlFESWxIeHJMMzZUU2ZTbm1iQmpYS3hxVncyWmsifQ.eyJpc3MiOiJrdWJlcm5ldGVzL3NlcnZpY2VhY2NvdW50Iiwia3ViZXJuZXRlcy5pby9zZXJ2aWNlYWNjb3VudC9uYW1lc3BhY2UiOiJrdWJlLXN5c3RlbSIsImt1YmVybmV0ZXMuaW8vc2VydmljZWFjY291bnQvc2VjcmV0Lm5hbWUiOiJ0ZXN0LWFkbWluLXNlY3JldCIsImt1YmVybmV0ZXMuaW8vc2VydmljZWFjY291bnQvc2VydmljZS1hY2NvdW50Lm5hbWUiOiJ0ZXN0LWFkbWluIiwia3ViZXJuZXRlcy5pby9zZXJ2aWNlYWNjb3VudC9zZXJ2aWNlLWFjY291bnQudWlkIjoiZWRjM2I0YzItMWRhYy00ZDg4LWI0ZDctNjkxNzI2MWViMTNhIiwic3ViIjoic3lzdGVtOnNlcnZpY2VhY2NvdW50Omt1YmUtc3lzdGVtOnRlc3QtYWRtaW4ifQ.epOkqat03Ngx45No1F-zEIlYjuNIKz17r9T61QucgcECDHLA-_auIL7sYyTVDDt49DqinyiM5ujluHqu5OYbYCYh_Y3YqRgfpk1ZFqygE63SF9npLc7kDo38F3_Ppd8VuvNyrWt9JrsT7ECcFcPpCnQCRAzzgzYkBtiZqUHKCloyfbgIpajcskbK1HoZPmfR0k73EefraDNhzPK26LN6MuBptI20WX2t56TzhgufoPXL-6QDe7HYLhbCi3iwi-zaXNT1ng7L8nhGsMsJ4IX4a2YZkS75ZGHZq5ZJT9nZAroxTlURsCxH1ujL7IP09X6Q5B3dIGE1aCyJk3BL2aJ_oA

 

이제 여기서 셋팅 된  cluster, context, user 값을 가지고 외부에서 k8s  cluster 에 접속 할 수 있다.


댓글