Configure IAM Roles for Service Accounts (IRSA) for EKS
<service_account_name> <namespace> [--policy <policy_arn>]eks/# Setup IRSA for EKS Configure IAM Roles for Service Accounts (IRSA). Arguments: $ARGUMENTS ## What is IRSA? IRSA allows Kubernetes pods to assume IAM roles without using node-level credentials: - Fine-grained access control per pod - Follows least-privilege principle - Automatic credential rotation - Audit trail via CloudTrail ## IRSA Components 1. **OIDC Provider**: Created with EKS cluster 2. **IAM Role**: With trust policy for the service account 3. **IAM Policy**: Defines AWS permissions 4. **Service Account**: Kubernetes SA annotated with role ARN ## Configuration Templates ###...