Version 1.16. This version is no longer supported. For information about how to upgrade to version 1.28, see Upgrade clusters in the latest documentation. For more information about supported and unsupported versions, see the Versioning page in the latest documentation.
Google Distributed Cloud deploys Pods to your nodes that have elevated
RBAC
permissions such as the ability to modify all Deployments and to read all
cluster Secrets. These permissions are required for Google Distributed Cloud to
function correctly.
The following table lists all Google Distributed Cloud components with elevated
permissions:
[[["Easy to understand","easyToUnderstand","thumb-up"],["Solved my problem","solvedMyProblem","thumb-up"],["Other","otherUp","thumb-up"]],[["Hard to understand","hardToUnderstand","thumb-down"],["Incorrect information or sample code","incorrectInformationOrSampleCode","thumb-down"],["Missing the information/samples I need","missingTheInformationSamplesINeed","thumb-down"],["Other","otherDown","thumb-down"]],["Last updated 2025-03-05 UTC."],[[["Google Distributed Cloud requires Pods with elevated RBAC permissions to function, including the ability to modify Deployments and read cluster Secrets."],["Several Google Distributed Cloud components, such as `ais`, `anet-operator`, and `anthos-cluster-operator`, are granted these elevated permissions."],["Optional features like VM Runtime and multi-NIC for pods necessitate some of these components with high permissions, however, they are disabled by default until you activate the specific features."],["The provided list outlines the numerous components, including `cert-manager`, `istio-ingress`, and `metrics-server`, that are granted these elevated RBAC permissions to ensure proper operation of Google Distributed Cloud."]]],[]]