Skip to content

Commit ee344d8

Browse files
committed
Add proper OperatorConfig rbac permission so it can deploy a real external-secrets helm-chart based operator
1 parent 0694458 commit ee344d8

File tree

1 file changed

+32
-0
lines changed

1 file changed

+32
-0
lines changed

config/rbac/role.yaml

+32
Original file line numberDiff line numberDiff line change
@@ -80,4 +80,36 @@ rules:
8080
- update
8181
- watch
8282

83+
##
84+
## Custom rules needed by real helm chart operator to manage all operator resources)
85+
##
86+
- apiGroups:
87+
- apiextensions.k8s.io
88+
resources:
89+
- customresourcedefinitions
90+
verbs:
91+
- '*'
92+
- apiGroups:
93+
- rbac.authorization.k8s.io
94+
resources:
95+
- clusterroles
96+
- clusterrolebindings
97+
- roles
98+
- rolebindings
99+
verbs:
100+
- '*'
101+
- apiGroups:
102+
- ""
103+
resources:
104+
- serviceaccounts
105+
- services
106+
verbs:
107+
- '*'
108+
- apiGroups:
109+
- apps
110+
resources:
111+
- deployments
112+
verbs:
113+
- '*'
114+
83115
#+kubebuilder:scaffold:rules

0 commit comments

Comments
 (0)