403Webshell
Server IP : 3.96.16.70  /  Your IP : 216.73.216.15
Web Server : Apache
System : Linux ip-172-31-26-103.ca-central-1.compute.internal 6.1.163-186.299.amzn2023.x86_64 #1 SMP PREEMPT_DYNAMIC Tue Feb 24 16:35:42 UTC 2026 x86_64
User : ec2-user ( 1000)
PHP Version : 8.4.18
Disable Function : NONE
MySQL : OFF  |  cURL : ON  |  WGET : ON  |  Perl : ON  |  Python : OFF  |  Sudo : ON  |  Pkexec : OFF
Directory :  /lib/python3.9/site-packages/awscli/examples/eks/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ Back ]     

Current File : /lib/python3.9/site-packages/awscli/examples/eks/create-access-entry.rst
**Example 1: To create the access entry for EKS cluster**

The following ``create-access-entry`` example creates an access entry that allows an IAM principal to access the EKS cluster. ::

    aws eks create-access-entry \
        --cluster-name eks-customer \
        --principal-arn arn:aws:iam::111122223333:user/eks-user

Output::

    {
        "accessEntry": {
            "clusterName": "eks-customer",
            "principalArn": "arn:aws:iam::111122223333:user/eks-user",
            "kubernetesGroups": [],
            "accessEntryArn": "arn:aws:eks:us-west-2:111122223333:access-entry/eks-customer/user/111122223333/eks-user/a1b2c3d4-5678-90ab-cdef-a6506e3d36p0",
            "createdAt": "2025-04-14T22:45:48.097000-05:00",
            "modifiedAt": "2025-04-14T22:45:48.097000-05:00",
            "tags": {},
            "username": "arn:aws:iam::111122223333:user/eks-user",
            "type": "STANDARD"
        }
    }

For more information, see `Create access entries <https://docs.aws.amazon.com/eks/latest/userguide/creating-access-entries.html>`__ in the *Amazon EKS User Guide*.

**Example 2: To create the access entry for EKS cluster by specifying the type of access entry**

The following ``create-access-entry`` example creates an access entry of type ``EC2_LINUX`` in the EKS cluster. By default, a type ``STANDARD`` access entry is created. Apart from the default, if we specify any other access entry types, an IAM role ARN needs to be passed in the CLI. ::

    aws eks create-access-entry \
        --cluster-name eks-customer \
        --principal-arn arn:aws:iam::111122223333:role/admin-test-ip \
        --type EC2_LINUX

Output::

    {
        "accessEntry": {
            "clusterName": "eks-customer",
            "principalArn": "arn:aws:iam::111122223333:role/admin-test-ip",
            "kubernetesGroups": [
                "system:nodes"
            ],
            "accessEntryArn": "arn:aws:eks:us-west-2:111122223333:access-entry/eks-customer/role/111122223333/admin-test-ip/accb5418-f493-f390-3e6e-c3f19f725fcp",
            "createdAt": "2025-05-06T19:42:45.453000-05:00",
            "modifiedAt": "2025-05-06T19:42:45.453000-05:00",
            "tags": {},
            "username": "system:node:{{EC2PrivateDNSName}}",
            "type": "EC2_LINUX"
        }
    }

For more information, see `Create access entries <https://docs.aws.amazon.com/eks/latest/userguide/creating-access-entries.html>`__ in the *Amazon EKS User Guide*.

Youez - 2016 - github.com/yon3zu
LinuXploit