...
1apiVersion: iam.cnrm.cloud.google.com/v1beta1 # bind SA to clusterViewer
2kind: IAMPolicyMember
3metadata:
4 name: fluentbit-sa-k8s-logs-writer
5 namespace: fluent-operator
6 annotations:
7 pallet.edge.ncr.com/created: "2023-02-16T21:26:39Z"
8 pallet.edge.ncr.com/name: fluentbit
9 pallet.edge.ncr.com/revision: 696897a3df910b6e84a88c9336907a17b18159c1
10 pallet.edge.ncr.com/source: https://github.com/ncrvoyix-swt-retail/edge-infra/tree/696897a3df910b6e84a88c9336907a17b18159c1
11 pallet.edge.ncr.com/team: '@ncrvoyix-swt-retail/edge-logging'
12 pallet.edge.ncr.com/version: 7.7.7-rc.1676582799+commit.696897a
13 labels:
14 cluster_hash: ${cluster_hash}
15 cluster_uuid: ${cluster_uuid}
16spec:
17 member: serviceAccount:o11y-${cluster_hash}@${gcp_project_id}.iam.gserviceaccount.com
18 resourceRef:
19 apiVersion: resourcemanager.cnrm.cloud.google.com/v1beta1
20 kind: Project
21 external: "projects/${foreman_gcp_project_id}"
22 role: roles/logging.logWriter
View as plain text