The description and examples are updated for the airshipctl commands, which will be inturn used for generating documentation. Please ignore the .md file changes in this PS. They are added for zuul gates to pass. Here is the PS with generated documention files https://review.opendev.org/c/airship/airshipctl/+/789250 Relates-To: #280 Change-Id: I7c088528842ff859f502d4484ff9a3847ebb1177
50 lines
1.4 KiB
Markdown
50 lines
1.4 KiB
Markdown
## airshipctl cluster rotate-sa-token
|
|
|
|
Airshipctl command to rotate tokens of Service Account(s)
|
|
|
|
### Synopsis
|
|
|
|
Reset/rotate the Service Account(SA) tokens and additionally restart the corresponding pods to get the latest
|
|
token data reflected in the pod spec.
|
|
|
|
Secret-namespace is a mandatory flag and secret-name is optional. If secret-name is not given, all the SA tokens
|
|
in that particular namespace is considered, else only that particular input secret-name.
|
|
|
|
|
|
```
|
|
airshipctl cluster rotate-sa-token [flags]
|
|
```
|
|
|
|
### Examples
|
|
|
|
```
|
|
|
|
To rotate a particular SA token
|
|
# airshipctl cluster rotate-sa-token -n cert-manager -s cert-manager-token-vvn9p
|
|
|
|
To rotate all the SA tokens in cert-manager namespace
|
|
# airshipctl cluster rotate-sa-token -n cert-manager
|
|
|
|
```
|
|
|
|
### Options
|
|
|
|
```
|
|
-h, --help help for rotate-sa-token
|
|
--kubeconfig string path to kubeconfig associated with cluster being managed
|
|
-s, --secret-name string name of the secret containing Service Account Token
|
|
-n, --secret-namespace string namespace of the Service Account Token
|
|
```
|
|
|
|
### Options inherited from parent commands
|
|
|
|
```
|
|
--airshipconf string Path to file for airshipctl configuration. (default "$HOME/.airship/config")
|
|
--debug enable verbose output
|
|
```
|
|
|
|
### SEE ALSO
|
|
|
|
* [airshipctl cluster](airshipctl_cluster.md) - Airshipctl command to manage kubernetes clusters
|
|
|