IdentityProviderConfig
eks.services.k8s.aws/v1alpha1
Type | Link |
---|---|
GoDoc | eks-controller/apis/v1alpha1#IdentityProviderConfig |
Metadata
Property | Value |
---|---|
Scope | Namespaced |
Kind | IdentityProviderConfig |
ListKind | IdentityProviderConfigList |
Plural | identityproviderconfigs |
Singular | identityproviderconfig |
An object representing an identity provider configuration.
Spec
clusterName: string
clusterRef:
from:
name: string
namespace: string
oidc:
clientID: string
groupsClaim: string
groupsPrefix: string
identityProviderConfigName: string
issuerURL: string
requiredClaims: {}
usernameClaim: string
usernamePrefix: string
tags: {}
Field | Description |
---|---|
clusterName Optional | string The name of your cluster. |
clusterRef Optional | object AWSResourceReferenceWrapper provides a wrapper around *AWSResourceReference type to provide more user friendly syntax for references using ‘from’ field Ex: APIIDRef: from: name: my-api |
clusterRef.from Optional | object AWSResourceReference provides all the values necessary to reference another k8s resource for finding the identifier(Id/ARN/Name) |
clusterRef.from.name Optional | string |
clusterRef.from.namespace Optional | string |
oidc Required | object An object representing an OpenID Connect (OIDC) identity provider configuration. |
oidc.clientID Optional | string |
oidc.groupsClaim Optional | string |
oidc.groupsPrefix Optional | string |
oidc.identityProviderConfigName Optional | string |
oidc.issuerURL Optional | string |
oidc.requiredClaims Optional | object |
oidc.usernameClaim Optional | string |
oidc.usernamePrefix Optional | string |
tags Optional | object Metadata that assists with categorization and organization. Each tag consists of a key and an optional value. You define both. Tags don’t propagate to any other cluster or Amazon Web Services resources. |
Status
ackResourceMetadata:
arn: string
ownerAccountID: string
region: string
conditions:
- lastTransitionTime: string
message: string
reason: string
status: string
type: string
status: string
Field | Description |
---|---|
ackResourceMetadata Optional | object All CRs managed by ACK have a common Status.ACKResourceMetadata memberthat is used to contain resource sync state, account ownership, constructed ARN for the resource |
ackResourceMetadata.arn Optional | string ARN is the Amazon Resource Name for the resource. This is a globally-unique identifier and is set only by the ACK service controller once the controller has orchestrated the creation of the resource OR when it has verified that an “adopted” resource (a resource where the ARN annotation was set by the Kubernetes user on the CR) exists and matches the supplied CR’s Spec field values. TODO(vijat@): Find a better strategy for resources that do not have ARN in CreateOutputResponse https://github.com/aws/aws-controllers-k8s/issues/270 |
ackResourceMetadata.ownerAccountID Required | string OwnerAccountID is the AWS Account ID of the account that owns the backend AWS service API resource. |
ackResourceMetadata.region Required | string Region is the AWS region in which the resource exists or will exist. |
conditions Optional | array All CRS managed by ACK have a common Status.Conditions member thatcontains a collection of ackv1alpha1.Condition objects that describethe various terminal states of the CR and its backend AWS service API resource |
conditions.[] Required | object Condition is the common struct used by all CRDs managed by ACK service |
controllers to indicate terminal states of the CR and its backend AWS | |
service API resource | |
conditions.[].message Optional | string A human readable message indicating details about the transition. |
conditions.[].reason Optional | string The reason for the condition’s last transition. |
conditions.[].status Optional | string Status of the condition, one of True, False, Unknown. |
conditions.[].type Optional | string Type is the type of the Condition |
status Optional | string The status of the OIDC identity provider. |