Options
All
  • Public
  • Public/Protected
  • All
Menu

Interface ServiceAccountTokenProjection

ServiceAccountTokenProjection represents a projected service account token volume. This projection can be used to insert a service account token into the pods runtime filesystem for use against APIs (Kubernetes API Server or otherwise).

schema

io.k8s.api.core.v1.ServiceAccountTokenProjection

Hierarchy

  • ServiceAccountTokenProjection

Index

Properties

Optional Readonly audience

audience: string

Audience is the intended audience of the token. A recipient of a token must identify itself with an identifier specified in the audience of the token, and otherwise should reject the token. The audience defaults to the identifier of the apiserver.

schema

io.k8s.api.core.v1.ServiceAccountTokenProjection#audience

Optional Readonly expirationSeconds

expirationSeconds: number

ExpirationSeconds is the requested duration of validity of the service account token. As the token approaches expiration, the kubelet volume plugin will proactively rotate the service account token. The kubelet will start trying to rotate the token if the token is older than 80 percent of its time to live or if the token is older than 24 hours.Defaults to 1 hour and must be at least 10 minutes.

default

1 hour and must be at least 10 minutes.

schema

io.k8s.api.core.v1.ServiceAccountTokenProjection#expirationSeconds

Readonly path

path: string

Path is the path relative to the mount point of the file to project the token into.

schema

io.k8s.api.core.v1.ServiceAccountTokenProjection#path

Generated using TypeDoc