-
Notifications
You must be signed in to change notification settings - Fork 4
Open
Description
Current operator allows to synchronise IAM groups, but sometimes it is required to create a single user record which does not belong to IAM group.
For example, the following configuration:
apiVersion: auth.ops42.org/v1alpha1
kind: AwsAuthSyncConfig
metadata:
name: default
namespace: kube-system
spec:
mapUsers:
- userarn: arn:aws:iam::677983237296:user/john
username: john # optional, defaults to AWS username
groups:
- dev-operator-k8s-admins
- dev-operator-k8s-usersShould result in the following AWS Auth configmap:
...
mapUsers: |
- userarn: arn:aws:iam::677983237296:user/john
username: john
groups:
- dev-operator-k8s-admins
- dev-operator-k8s-usersThis functionality should support combining with syncIamGroups configurations.
Reactions are currently unavailable
Metadata
Metadata
Assignees
Labels
No labels