Merge pull request #24604 from mdgrotheer/patch-1

Update authentication.md
This commit is contained in:
Kubernetes Prow Robot
2020-10-20 11:48:19 -07:00
committed by GitHub
@@ -29,7 +29,7 @@ It is assumed that a cluster-independent service manages normal users in the fol
In this regard, _Kubernetes does not have objects which represent normal user In this regard, _Kubernetes does not have objects which represent normal user
accounts._ Normal users cannot be added to a cluster through an API call. accounts._ Normal users cannot be added to a cluster through an API call.
Even though normal user cannot be added via an API call, but any user that Even though a normal user cannot be added via an API call, any user that
presents a valid certificate signed by the cluster's certificate authority presents a valid certificate signed by the cluster's certificate authority
(CA) is considered authenticated. In this configuration, Kubernetes determines (CA) is considered authenticated. In this configuration, Kubernetes determines
the username from the common name field in the 'subject' of the cert (e.g., the username from the common name field in the 'subject' of the cert (e.g.,