kube-rbac-proxy is an HTTP proxy that can perform RBAC authorization against the Kubernetes API based on the SubjectAccessReview authorization resource.
Overview of Kube RBAC Proxy Trademarks: This software listing is packaged by Bitnami. The respective trademarks mentioned in the offering are owned by the respective companies, and use of them does not imply any affiliation or endorsement.
docker run --name kube-rbac-proxy REGISTRY_NAME/bitnami/kube-rbac-proxy:latest
Note: You need to substitute the
REGISTRY_NAMEplaceholder with a reference to your container registry.
Dockerfile linksLearn more about the Bitnami tagging policy and the difference between rolling tags and immutable tags in our documentation page.
The recommended way to get the Bitnami Kube RBAC Proxy Docker Image is to pull the prebuilt image from the Docker Hub Registry.
docker pull REGISTRY_NAME/bitnami/kube-rbac-proxy:latest
To use a specific version, you can pull a versioned tag. You can view the list of available versions in the Docker Hub Registry.
docker pull REGISTRY_NAME/bitnami/kube-rbac-proxy:[TAG]
If you wish, you can also build the image yourself by cloning the repository, changing to the directory containing the Dockerfile and executing the docker build command. Remember to replace the APP, VERSION and OPERATING-SYSTEM path placeholders in the example command below with the correct values.
git clone https://github.com/bitnami/containers.git
cd bitnami/APP/VERSION/OPERATING-SYSTEM
docker build -t REGISTRY_NAME/bitnami/APP:latest .
Non-root container images add an extra layer of security and are generally recommended for production environments. However, because they run as a non-root user, privileged tasks are typically off-limits. Learn more about non-root containers in our docs.
The following section describes how to run commands
To run commands inside this container you can use docker run, for example to execute kube-rbac-proxy --upstream=http://127.0.0.1:8081/ you can follow the example below:
docker run --rm --name kube-rbac-proxy REGISTRY_NAME/bitnami/kube-rbac-proxy:latest -- --upstream=http://127.0.0.1:8081/
Check the official Kube RBAC Proxy documentation for more information.
docker-compose.yaml file has been removed, as it was solely intended for internal testing purposes.Copyright © 2026 Broadcom. The term "Broadcom" refers to Broadcom Inc. and/or its subsidiaries.
Licensed under the Apache License, Version 2.0 (the "License"); you may not use this file except in compliance with the License. You may obtain a copy of the License at
http://www.apache.org/licenses/LICENSE-2.0
Unless required by applicable law or agreed to in writing, software distributed under the License is distributed on an "AS IS" BASIS, WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. See the License for the specific language governing permissions and limitations under the License.
Content type
Image
Digest
sha256:99ac4089d…
Size
16.3 MB
Last updated
16 days ago
docker pull bitnamisecure/kube-rbac-proxy