apiVersion: backend.edge.ncr.com/v1alpha2 kind: DatabaseUser metadata: name: ea-userservice-sa spec: type: CLOUD_IAM_SERVICE_ACCOUNT serviceAccount: emailRef: ea-userservice-sa@${gcp_project_id}.iam.gserviceaccount.com iamUsername: ea-userservice-sa@${gcp_project_id}.iam force: true grants: - schema: public tableGrant: - permissions: - permission: SELECT table: ea_rules_privileges - permissions: - permission: SELECT table: oi_role_privileges instanceRef: name: ${edge_sql_db_name}-migrated projectID: ${gcp_project_id} prune: true