apiVersion: rbac.authorization.k8s.io/v1 kind: Role metadata: name: mariadb-secret-creator-role rules: - resources: ["secrets"] apiGroups: [""] verbs: ["create", "delete"] --- apiVersion: rbac.authorization.k8s.io/v1 kind: Role metadata: name: mariadb-secret-reader-role rules: - resources: ["secrets"] apiGroups: [""] verbs: ["get"]