let examples be clusterroles

This commit is contained in:
Felix Kunde 2021-01-26 17:23:35 +01:00
parent 6575e380b2
commit ab92c76c28
3 changed files with 2 additions and 16 deletions

View File

@ -1,6 +1,6 @@
{{ if .Values.rbac.create }} {{ if .Values.rbac.create }}
apiVersion: rbac.authorization.k8s.io/v1 apiVersion: rbac.authorization.k8s.io/v1
kind: Role kind: ClusterRole
metadata: metadata:
name: {{ include "postgres-pod.serviceAccountName" . }} name: {{ include "postgres-pod.serviceAccountName" . }}
labels: labels:

View File

@ -230,7 +230,7 @@ subjects:
--- ---
apiVersion: rbac.authorization.k8s.io/v1 apiVersion: rbac.authorization.k8s.io/v1
kind: Role kind: ClusterRole
metadata: metadata:
name: postgres-pod name: postgres-pod
rules: rules:

View File

@ -305,20 +305,6 @@ func (c *Controller) initRole() {
"verbs": [ "verbs": [
"create" "create"
] ]
},
{
"apiGroups": [
"extensions"
],
"resources": [
"podsecuritypolicies"
],
"resourceNames": [
"privileged"
],
"verbs": [
"use"
]
} }
] ]
}`, c.PodServiceAccount.Name) }`, c.PodServiceAccount.Name)