GCE和Kubernetes权限

时间:2018-03-03 12:17:03

标签: kubernetes google-compute-engine

我正在尝试通过脚本在GCE上设置一个kubernetes集群,它总是适用于过去,但我在GCE上创建了一个新项目,我突然得到所有这些权限错误:

示例:

Error from server (Forbidden): serviceaccounts is forbidden: User "client" cannot list serviceaccounts in the namespace "default": Unknown user "client"

当我kubectl proxy并打开http://localhost:8001/时,我得到:

{
  "kind": "Status",
  "apiVersion": "v1",
  "metadata": {

  },
  "status": "Failure",
  "message": "forbidden: User \"client\" cannot get path \"/\": Unknown user \"client\"",
  "reason": "Forbidden",
  "details": {

  },
  "code": 403
}

有人可能会向我暗示正确的方向吗? THX!

1 个答案:

答案 0 :(得分:0)

what does Unknown user "client" mean?的重复:

发现gcloud配置存在一些问题。这个命令解决了它:

gcloud config unset container/use_client_certificate