Azure Kubernetes Service (AKS) cluster requires an identity to create additional resources like load balancers and managed disks in Azure. It can use a managed identity which AKS creates automatically. Azure Active Directory pod-managed identities uses Kubernetes primitives to associate managed identities for Azure resources and identities in Azure Active Directory (AAD) with pods. Administrators create identities and bindings as Kubernetes primitives that allow pods to access Azure resources that rely on AAD as an identity provider.
Download slide deck from here: https://nzpowerlunchfiles.blob.core.windows.net/data/aks-managed-identity-support-2020-01-15.pdf


