-
Notifications
You must be signed in to change notification settings - Fork 979
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Restrict IAM Policy in AWS Setup Instructions #507
Labels
Comments
ellistarn
added
documentation
Improvements or additions to documentation
feature
New feature or request
v0.3
labels
Jul 8, 2021
Should also limit |
<removed - outdated> |
sample-policy-karpenter-restrict-controller-role-14DEC2021.json.txt here is a sample policy that currently only works for deletes, not create instances. so, a work in progress. |
chrisnegus
added
burning
Time sensitive issues
and removed
documentation
Improvements or additions to documentation
labels
Dec 16, 2021
3 tasks
gfcroft
pushed a commit
to gfcroft/karpenter-provider-aws
that referenced
this issue
Nov 25, 2023
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
The AWS Setup instructions should use https://docs.aws.amazon.com/IAM/latest/UserGuide/access_iam-tags.html to ensure that cross-cluster resource launching is not possible. Canonical tagkey format:
kubernetes.io/cluster/$CLUSTER_NAME
.The text was updated successfully, but these errors were encountered: