alcideio/rbac-tool

Analysis/Audit rule listing bindings for non-existant accounts

fuero opened this issue · 0 comments

fuero commented

What would you like to be added:
I'd like `rbac-tool analyze' warn about (Cluster)Rolebindings for accounts that don't or no longer exist in the cluster.

Why is this needed:
Unnecessary permissions are a security risk and should be audited.