Kubernetes

Get a kubeconfig

A kubeconfig for this cluster with a freshly minted cluster token embedded, the same kind of token createKubernetesClusterToken returns. It holds no client certificate, and it stops working when the token expires after one hour. orl kube kubeconfig writes one that keeps working: it holds no token and runs orl kube token for each kubectl request. A cluster that is deleting or failed answers 409 INVALID_CLUSTER_STATE, and so does a cluster that is creating until its control plane's certificate authority exists. A restricted or pending organization can still get one. Needs clusters:write on an API key, or the owner, admin or member role on a session.

get/v1/kubernetes/clusters/{id}/kubeconfig

Path parameters

idstring required

Response

The kubeconfig

expiresAtstring required

When the embedded token expires (RFC 3339).

kubeconfigstring required

The kubeconfig document (YAML), ready to save as a file. Its server is https://<id>.k8s.<zone>:6443 and it embeds a cluster token, never a client certificate.

role'cluster-admin' | 'view' required

The in-cluster role the embedded token carries.

ttlSecondsinteger required

The token's lifetime from when it was minted.

Changes

Changed in 1 of the 40 revisions of this API.1