Skip to content
Proud to collaborate with Microsoft for Startups

gcp.gke.build_kubeconfig ​

Build a kubeconfig-shaped credential document for an existing GKE cluster.

Overview ​

PropertyValue
Workflow typeLinear
LibraryBase-gcp
Version1.0

Input Schema ​

FieldTypeRequiredDefaultDescription
connection_uuiduuidYes—GCP CloudConnection UUID.
project_idstringNo—GCP project override; defaults to the connection project.
locationstringYes—GKE cluster region or zone.
namestringYes—Cluster name.
context_namestringNo—kubeconfig context name override.
user_namestringNo—kubeconfig user name override.
namespace_defaultstringNo—Default Kubernetes namespace for the context.
include_raw_clusterbooleanNo—Include sanitized cluster response in output.
include_tokenbooleanNo—Emit a one-shot bearer token (legacy/direct use). Off by default; delegated connections mint tokens at use-time.

Output Schema ​

FieldTypeRequiredDefaultDescription
connection_uuiduuidNo—GCP CloudConnection UUID echoed from input.
project_idstringNo—Effective GCP project.
authenticated_project_idstringNo—Project resolved by credential validation.
auth_validationbooleanNo—True when credential validation succeeded.
locationstringNo—GKE cluster region or zone.
namestringNo—Cluster name.
provider_resource_idstringNo—Full provider cluster resource path.
statusstringNo—Cluster status observed while building kubeconfig.
api_serverstringNo—Kubernetes API server URL.
endpointstringNo—Kubernetes API endpoint host or address.
ca_certificatestringNo—Cluster CA certificate PEM.
ca_certificate_datastringNo—Base64-encoded cluster CA from GKE.
bearer_tokenstringNo—OAuth bearer token minted from the GCP connection.
token_expires_atstringNo—ISO expiry for bearer_token when known.
kubeconfigstringNo—Kubeconfig YAML using current-context and token auth.
context_namestringNo—Effective kubeconfig context name.
cluster_namestringNo—Effective kubeconfig cluster entry name.
user_namestringNo—Effective kubeconfig user entry name.
namespace_defaultstringNo—Default Kubernetes namespace
include_raw_clusterbooleanNo—Include sanitized cluster response in output.
include_tokenbooleanNo—Whether a one-shot bearer token was emitted (echoed from input).
auth_modestringNo—kubeconfig auth mode; gke_delegated by default, bearer_token when include_token is true.
provider_connection_uuidstringNo—GCP CloudConnection UUID a delegated Kubernetes connection mints tokens from at use-time.
clusterjsonNo—Sanitized cluster response when include_raw_cluster is true.
failure_reasonstringNo—Human-readable failure reason.
failed_stepstringNo—Failed logical step.
failed_layerjsonNo—Engine failed layer.
failed_at_statestringNo—State where failure occurred.
errorstringNo—Error message.
error_typestringNo—Error class.
failed_atstringNo—ISO failure timestamp.

States ​

StateInitialTerminalSuccessAuto-advanceDescription
pendingYesNo—preflight—
executingNoNo—complete—
preflightingNoNo—execute—
completedNoYesYes——
failedNoYesNo——

State Diagram ​

Transitions ​

FromActionToDescription
pendingpreflightpreflighting—
preflightingexecuteexecuting—
executingcompletecompleted—
* (any state)failfailed—

API Usage ​

bash
POST /api/workflows/start
Content-Type: application/json

{
  "workflow_type": "gcp.gke.build_kubeconfig",
  "initial_data": {
    "connection_uuid": "value",
    "location": "value",
    "name": "value"
  }
}