Setting up an HA Kubernetes cluster with private networking in AWS
nivenly.com
nivenly.com
The one that's most popular I believe is kube2iam: https://github.com/jtblin/kube2iam
Using IAM roles then boils down to setting an annotation such as `iam.amazonaws.com/role: my-db-access-role` on a pod (assuming the correct trust relationship has been configured).
I'm really liking the direction that kargo is taking. It leverages a well known toolset - ansible - to build out its functionality.
kargo is compatible with everything from bare metal to AWS... with the caveat that when using it in AWS, you have to use a different provisioning tool like Terraform.
This is a feature.. not a bug.
So I actually think kargo is a great choice on bare-metal - and it also does a great job of running on multiple clouds and bare metal. But the design of kops isn't particularly tied to AWS, though it does match better with clouds.
[1] https://libcloud.readthedocs.io/en/latest/compute/supported_...
It is possible to build a kops cloud implementation that doesn't do direct-to-cloud-API-calls, but instead just outputs terraform - that would be faster - but you would still have to figure out the right way to run Kubernetes on cloud X. Most of the work is in doing that!
There are also golang alternatives to libcloud one of them ->https://github.com/apcera/libretto
1. https://github.com/brooklyncentral/clocker 2. http://jclouds.apache.org/ 3. https://github.com/tigera/canal