I too am excited to hear more. The necessity for kube2iam and kaim are one of the major blockers that have prevented us from considering EKS for a client, the major sticking point being that they move the implementation of shipping security material around from the AWS to the customer side of the shared responsibility model.
Comments
This is something we’ve heard a lot and are working together with the Kubernetes community on. We’ll have more to announce on this one soon
Full disclosure: I work on EKS at AWS
I too am excited to hear more. The necessity for kube2iam and kaim are one of the major blockers that have prevented us from considering EKS for a client, the major sticking point being that they move the implementation of shipping security material around from the AWS to the customer side of the shared responsibility model.
This is exciting to hear. I look forward to hearing more.