This page explains how to deploy a container image to a GKE cluster (on
Google Cloud or Google Distributed Cloud) where Binary Authorization is enabled.
The kubectl commands you use to deploy the image are the same as the ones you
use to deploy images to clusters that don't use Binary Authorization.
Before you begin
Make sure you have the Binary Authorization API enabled in your project and a GKE cluster with Binary Authorization enabled. See setting up on Google Kubernetes Engine or setting up on Distributed Cloud.
Install kubectl for interacting with GKE.
Configure kubectl
You must update the local kubeconfig file for your kubectl installation.
This provides the credentials and endpoint information required to access the
cluster in GKE or Distributed Cloud.
To configure kubectl, run the following gcloud command:
GKE
gcloud container clusters get-credentials \
--zone ZONE \
CLUSTER_NAME
Replace the following:
- ZONE: the name of the GKE zone where the
cluster is running, for example,
us-central1-a - CLUSTER_NAME: the name of the cluster
Distributed Cloud
gcloud container fleet memberships get-credentials \
--location LOCATION \
MEMBERSHIP_NAME
Replace the following: