1KUBERNETES(1)(kubernetes) KUBERNETES(1)(kubernetes)
2
3
4
5Eric Paris Jan 2015
6
7
9 kubectl set serviceaccount - Update the service account of a resource
10
11
12
14 kubectl set serviceaccount [OPTIONS]
15
16
17
19 Update the service account of pod template resources.
20
21
22 Possible resources (case insensitive) can be:
23
24
25 replicationcontroller (rc), deployment (deploy), daemonset (ds), job,
26 replicaset (rs), statefulset
27
28
29
31 --all=false Select all resources, in the namespace of the speci‐
32 fied resource types
33
34
35 --allow-missing-template-keys=true If true, ignore any errors in
36 templates when a field or map key is missing in the template. Only ap‐
37 plies to golang and jsonpath output formats.
38
39
40 --dry-run="none" Must be "none", "server", or "client". If client
41 strategy, only print the object that would be sent, without sending it.
42 If server strategy, submit server-side request without persisting the
43 resource.
44
45
46 --field-manager="kubectl-set" Name of the manager used to track
47 field ownership.
48
49
50 -f, --filename=[] Filename, directory, or URL to files identifying
51 the resource to get from a server.
52
53
54 -k, --kustomize="" Process the kustomization directory. This flag
55 can't be used together with -f or -R.
56
57
58 --local=false If true, set serviceaccount will NOT contact api-
59 server but run locally.
60
61
62 -o, --output="" Output format. One of: (json, yaml, name, go-tem‐
63 plate, go-template-file, template, templatefile, jsonpath, jsonpath-as-
64 json, jsonpath-file).
65
66
67 --record=false Record current kubectl command in the resource an‐
68 notation. If set to false, do not record the command. If set to true,
69 record the command. If not set, default to updating the existing anno‐
70 tation value only if one already exists.
71
72
73 -R, --recursive=false Process the directory used in -f, --filename
74 recursively. Useful when you want to manage related manifests organized
75 within the same directory.
76
77
78 --show-managed-fields=false If true, keep the managedFields when
79 printing objects in JSON or YAML format.
80
81
82 --template="" Template string or path to template file to use when
83 -o=go-template, -o=go-template-file. The template format is golang tem‐
84 plates [http://golang.org/pkg/text/template/#pkg-overview].
85
86
87
89 --as="" Username to impersonate for the operation. User could be a
90 regular user or a service account in a namespace.
91
92
93 --as-group=[] Group to impersonate for the operation, this flag
94 can be repeated to specify multiple groups.
95
96
97 --as-uid="" UID to impersonate for the operation.
98
99
100 --azure-container-registry-config="" Path to the file containing
101 Azure container registry configuration information.
102
103
104 --cache-dir="/builddir/.kube/cache" Default cache directory
105
106
107 --certificate-authority="" Path to a cert file for the certificate
108 authority
109
110
111 --client-certificate="" Path to a client certificate file for TLS
112
113
114 --client-key="" Path to a client key file for TLS
115
116
117 --cluster="" The name of the kubeconfig cluster to use
118
119
120 --context="" The name of the kubeconfig context to use
121
122
123 --disable-compression=false If true, opt-out of response compres‐
124 sion for all requests to the server
125
126
127 --insecure-skip-tls-verify=false If true, the server's certificate
128 will not be checked for validity. This will make your HTTPS connections
129 insecure
130
131
132 --kubeconfig="" Path to the kubeconfig file to use for CLI re‐
133 quests.
134
135
136 --match-server-version=false Require server version to match
137 client version
138
139
140 -n, --namespace="" If present, the namespace scope for this CLI
141 request
142
143
144 --password="" Password for basic authentication to the API server
145
146
147 --profile="none" Name of profile to capture. One of
148 (none|cpu|heap|goroutine|threadcreate|block|mutex)
149
150
151 --profile-output="profile.pprof" Name of the file to write the
152 profile to
153
154
155 --request-timeout="0" The length of time to wait before giving up
156 on a single server request. Non-zero values should contain a corre‐
157 sponding time unit (e.g. 1s, 2m, 3h). A value of zero means don't time‐
158 out requests.
159
160
161 -s, --server="" The address and port of the Kubernetes API server
162
163
164 --tls-server-name="" Server name to use for server certificate
165 validation. If it is not provided, the hostname used to contact the
166 server is used
167
168
169 --token="" Bearer token for authentication to the API server
170
171
172 --user="" The name of the kubeconfig user to use
173
174
175 --username="" Username for basic authentication to the API server
176
177
178 --version=false Print version information and quit
179
180
181 --warnings-as-errors=false Treat warnings received from the server
182 as errors and exit with a non-zero exit code
183
184
185
187 # Set deployment nginx-deployment's service account to serviceaccount1
188 kubectl set serviceaccount deployment nginx-deployment serviceaccount1
189
190 # Print the result (in YAML format) of updated nginx deployment with the service account from local file, without hitting the API server
191 kubectl set sa -f nginx-deployment.yaml serviceaccount1 --local --dry-run=client -o yaml
192
193
194
195
197 kubectl-set(1),
198
199
200
202 January 2015, Originally compiled by Eric Paris (eparis at redhat dot
203 com) based on the kubernetes source material, but hopefully they have
204 been automatically generated since!
205
206
207
208Manuals User KUBERNETES(1)(kubernetes)