我正在尝试通过脚本在GCE上设置一个kubernetes集群,它总是适用于过去,但我在GCE上创建了一个新项目,我突然得到所有这些权限错误:
示例:
Error from server (Forbidden): serviceaccounts is forbidden: User "client" cannot list serviceaccounts in the namespace "default": Unknown user "client"
当我kubectl proxy
并打开http://localhost:8001/时,我得到:
{
"kind": "Status",
"apiVersion": "v1",
"metadata": {
},
"status": "Failure",
"message": "forbidden: User \"client\" cannot get path \"/\": Unknown user \"client\"",
"reason": "Forbidden",
"details": {
},
"code": 403
}
有人可能会向我暗示正确的方向吗? THX!
答案 0 :(得分:0)
what does Unknown user "client" mean?的重复:
发现gcloud配置存在一些问题。这个命令解决了它:
gcloud config unset container/use_client_certificate