---
title: Charmhub | Deploy Charmed Karapace K8s using Charmhub - The Open Operator Collection
description: Deploy the latest version of Charmed Karapace K8s as a Kubernetes Operator
  on any cloud.
url: https://charmhub.io/karapace-k8s/actions
---

# Charmed Karapace K8s

[Canonical](https://charmhub.io/publisher/data-platform "View all packages from Canonical")

* [Canonical](https://charmhub.io/publisher/data-platform "View all packages from Canonical")

Platform:

stable 14

```
juju deploy karapace-k8s
```

[Learn to deploy on juju >](https://juju.is/docs/juju/manage-applications)

* [get-password](https://charmhub.io/karapace-k8s/actions#get-password)
* [set-password](https://charmhub.io/karapace-k8s/actions#set-password)
* [set-tls-private-key](https://charmhub.io/karapace-k8s/actions#set-tls-private-key)

[Learn about actions >](https://juju.is/docs/juju/action)

* get-password

  Fetch the password of the provided internal user of the charm, used for internal charm operations. It is for internal charm users only, and SHOULD NOT be used by applications.

  Params

  + username
    string

    The username, the default value 'operator'. Possible values - operator
* set-password

  Change an internal system user's password. It is for internal charm users and SHOULD NOT be used by applications. This action must be called on the leader unit.

  Params

  + password
    string

    The password will be auto-generated if this option is not specified.
  + username
    string

    The internal username to set password for.

  Required

  username
* set-tls-private-key

  Sets the private key identifying the target unit, which will be used for certificate signing requests (CSR). When updated, certificates will be reissued to the unit. Run for each unit separately. Requires a valid relation to an application providing the `certificates` relation interface.

  Params

  + internal-key
    string

    The content of private key for internal communications with clients. Content will be auto-generated if this option is not specified. Can be raw-string, or base64 encoded.
