github.com/argoproj/argo-cd/v2@v2.10.5/docs/user-guide/commands/argocd_admin_settings_rbac_validate.md (about) 1 # `argocd admin settings rbac validate` Command Reference 2 3 ## argocd admin settings rbac validate 4 5 Validate RBAC policy 6 7 ### Synopsis 8 9 10 Validates an RBAC policy for being syntactically correct. The policy must be 11 a local file or a K8s ConfigMap in the provided namespace, and in either CSV or K8s ConfigMap format. 12 13 14 ``` 15 argocd admin settings rbac validate [--policy-file POLICYFILE] [--namespace NAMESPACE] [flags] 16 ``` 17 18 ### Examples 19 20 ``` 21 22 # Check whether a given policy file is valid using a local policy.csv file. 23 argocd admin settings rbac validate --policy-file policy.csv 24 25 # Policy file can also be K8s config map with data keys like argocd-rbac-cm, 26 # i.e. 'policy.csv' and (optionally) 'policy.default' 27 argocd admin settings rbac validate --policy-file argocd-rbac-cm.yaml 28 29 # If --policy-file is not given, and instead --namespace is giventhe ConfigMap 'argocd-rbac-cm' 30 # from K8s is used. 31 argocd admin settings rbac validate --namespace argocd 32 33 # Either --policy-file or --namespace must be given. 34 35 ``` 36 37 ### Options 38 39 ``` 40 --as string Username to impersonate for the operation 41 --as-group stringArray Group to impersonate for the operation, this flag can be repeated to specify multiple groups. 42 --as-uid string UID to impersonate for the operation 43 --certificate-authority string Path to a cert file for the certificate authority 44 --client-certificate string Path to a client certificate file for TLS 45 --client-key string Path to a client key file for TLS 46 --cluster string The name of the kubeconfig cluster to use 47 --context string The name of the kubeconfig context to use 48 --disable-compression If true, opt-out of response compression for all requests to the server 49 -h, --help help for validate 50 --insecure-skip-tls-verify If true, the server's certificate will not be checked for validity. This will make your HTTPS connections insecure 51 --kubeconfig string Path to a kube config. Only required if out-of-cluster 52 --namespace string namespace to get argo rbac configmap from 53 --password string Password for basic authentication to the API server 54 --policy-file string path to the policy file to use 55 --proxy-url string If provided, this URL will be used to connect via proxy 56 --request-timeout string The length of time to wait before giving up on a single server request. Non-zero values should contain a corresponding time unit (e.g. 1s, 2m, 3h). A value of zero means don't timeout requests. (default "0") 57 --server string The address and port of the Kubernetes API server 58 --tls-server-name string If provided, this name will be used to validate server certificate. If this is not provided, hostname used to contact the server is used. 59 --token string Bearer token for authentication to the API server 60 --user string The name of the kubeconfig user to use 61 --username string Username for basic authentication to the API server 62 ``` 63 64 ### Options inherited from parent commands 65 66 ``` 67 --argocd-cm-path string Path to local argocd-cm.yaml file 68 --argocd-secret-path string Path to local argocd-secret.yaml file 69 --auth-token string Authentication token 70 --client-crt string Client certificate file 71 --client-crt-key string Client certificate key file 72 --config string Path to Argo CD config (default "/home/user/.config/argocd/config") 73 --controller-name string Name of the Argo CD Application controller; set this or the ARGOCD_APPLICATION_CONTROLLER_NAME environment variable when the controller's name label differs from the default, for example when installing via the Helm chart (default "argocd-application-controller") 74 --core If set to true then CLI talks directly to Kubernetes instead of talking to Argo CD API server 75 --grpc-web Enables gRPC-web protocol. Useful if Argo CD server is behind proxy which does not support HTTP2. 76 --grpc-web-root-path string Enables gRPC-web protocol. Useful if Argo CD server is behind proxy which does not support HTTP2. Set web root. 77 -H, --header strings Sets additional header to all requests made by Argo CD CLI. (Can be repeated multiple times to add multiple headers, also supports comma separated headers) 78 --http-retry-max int Maximum number of retries to establish http connection to Argo CD server 79 --insecure Skip server certificate and domain verification 80 --kube-context string Directs the command to the given kube-context 81 --load-cluster-settings Indicates that config map and secret should be loaded from cluster unless local file path is provided 82 --logformat string Set the logging format. One of: text|json (default "text") 83 --loglevel string Set the logging level. One of: debug|info|warn|error (default "info") 84 --plaintext Disable TLS 85 --port-forward Connect to a random argocd-server port using port forwarding 86 --port-forward-namespace string Namespace name which should be used for port forwarding 87 --redis-haproxy-name string Name of the Redis HA Proxy; set this or the ARGOCD_REDIS_HAPROXY_NAME environment variable when the HA Proxy's name label differs from the default, for example when installing via the Helm chart (default "argocd-redis-ha-haproxy") 88 --redis-name string Name of the Redis deployment; set this or the ARGOCD_REDIS_NAME environment variable when the Redis's name label differs from the default, for example when installing via the Helm chart (default "argocd-redis") 89 --repo-server-name string Name of the Argo CD Repo server; set this or the ARGOCD_REPO_SERVER_NAME environment variable when the server's name label differs from the default, for example when installing via the Helm chart (default "argocd-repo-server") 90 --server-crt string Server certificate file 91 --server-name string Name of the Argo CD API server; set this or the ARGOCD_SERVER_NAME environment variable when the server's name label differs from the default, for example when installing via the Helm chart (default "argocd-server") 92 ``` 93 94 ### SEE ALSO 95 96 * [argocd admin settings rbac](argocd_admin_settings_rbac.md) - Validate and test RBAC configuration 97