apiVersion: rbac.authorization.k8s.io/v1 kind: ClusterRole metadata: name: ingress-controller rules: - resources: - configmaps apiGroups: - "" verbs: - get - list - watch - resources: - nodes apiGroups: - "" verbs: - get - list - watch - resources: - services apiGroups: - "" verbs: - get - list - patch - watch - resources: - ienodes apiGroups: - dsds.edge.ncr.com verbs: - get - list - watch - resources: - listeners - tcpmappings apiGroups: - getambassador.io verbs: - get - list - watch - resources: - authorizationpolicies - servers apiGroups: - policy.linkerd.io verbs: - get - list - watch --- apiVersion: rbac.authorization.k8s.io/v1 kind: Role metadata: name: ingress-controller namespace: emissary rules: - resources: - services apiGroups: - "" verbs: - create - delete - resources: - listeners apiGroups: - getambassador.io verbs: - create - delete - patch - resources: - authorizationpolicies - servers apiGroups: - policy.linkerd.io verbs: - create - delete - patch - update