--- apiVersion: rbac.authorization.k8s.io/v1 kind: ClusterRole metadata: name: decommissioner-role rules: - apiGroups: - "" resources: - events verbs: - create - patch - apiGroups: - "" resources: - persistentvolumeclaims verbs: - delete - get - list - watch - apiGroups: - "" resources: - persistentvolumes verbs: - patch - apiGroups: - "" resources: - pods - secrets verbs: - get - list - watch - apiGroups: - apps resources: - statefulsets verbs: - get - list - watch - apiGroups: - coordination.k8s.io resources: - leases verbs: - create - delete - get - list - patch - update - watch --- apiVersion: rbac.authorization.k8s.io/v1 kind: Role metadata: name: decommissioner-role namespace: default rules: - apiGroups: - "" resources: - events verbs: - create - patch - apiGroups: - "" resources: - persistentvolumeclaims verbs: - delete - get - list - watch - apiGroups: - "" resources: - pods - secrets verbs: - get - list - watch - apiGroups: - apps resources: - statefulsets verbs: - get - list - watch - apiGroups: - coordination.k8s.io resources: - leases verbs: - create - delete - get - list - patch - update - watch