kubeadm token
kubectl auth, kubectl auth can-i, kubectl auth reconcile
kubectl create [ role | clusterrole | clusterrolebinding
rolebinding | serviceaccount ], groups:
kube2iam
Advertising: