...
1---
2apiVersion: rbac.authorization.k8s.io/v1
3kind: ClusterRole
4metadata:
5 name: decommissioner-role
6rules:
7- apiGroups:
8 - ""
9 resources:
10 - events
11 verbs:
12 - create
13 - patch
14- apiGroups:
15 - ""
16 resources:
17 - persistentvolumeclaims
18 verbs:
19 - delete
20 - get
21 - list
22 - watch
23- apiGroups:
24 - ""
25 resources:
26 - persistentvolumes
27 verbs:
28 - patch
29- apiGroups:
30 - ""
31 resources:
32 - pods
33 - secrets
34 verbs:
35 - get
36 - list
37 - watch
38- apiGroups:
39 - apps
40 resources:
41 - statefulsets
42 verbs:
43 - get
44 - list
45 - watch
46- apiGroups:
47 - coordination.k8s.io
48 resources:
49 - leases
50 verbs:
51 - create
52 - delete
53 - get
54 - list
55 - patch
56 - update
57 - watch
58---
59apiVersion: rbac.authorization.k8s.io/v1
60kind: Role
61metadata:
62 name: decommissioner-role
63 namespace: default
64rules:
65- apiGroups:
66 - ""
67 resources:
68 - events
69 verbs:
70 - create
71 - patch
72- apiGroups:
73 - ""
74 resources:
75 - persistentvolumeclaims
76 verbs:
77 - delete
78 - get
79 - list
80 - watch
81- apiGroups:
82 - ""
83 resources:
84 - pods
85 - secrets
86 verbs:
87 - get
88 - list
89 - watch
90- apiGroups:
91 - apps
92 resources:
93 - statefulsets
94 verbs:
95 - get
96 - list
97 - watch
98- apiGroups:
99 - coordination.k8s.io
100 resources:
101 - leases
102 verbs:
103 - create
104 - delete
105 - get
106 - list
107 - patch
108 - update
109 - watch
View as plain text