Kubetier
← Permission Reference
T2

get services/proxy

The API server proxies requests to internal Services that often skip auth internally, including Kubernetes Dashboard, metrics-server, etcd exporter, and internal admin APIs.

API Group
(core)
Scope
namespaced
Audit Level
Request

Escalation Paths

  1. Use services/proxy through the API server

  2. Reach internal Services that do not require authentication internally

  3. Access dashboards, metrics-server, or internal admin APIs

Additional rights needed:

none
K8s docs ↗
K8s docs ↗