add events and leases resources to postgres-pod role

This commit is contained in:
Joel Gotsch 2025-04-15 20:16:02 +02:00 committed by GitHub
parent bf313b1549
commit e2bfe87ac0
No known key found for this signature in database
GPG Key ID: B5690EEEBB952194
1 changed files with 30 additions and 0 deletions

View File

@ -269,6 +269,27 @@ rules:
- list
- patch
- update
- apiGroups: [""]
resources:
- events # Patroni may log to events
verbs:
- create
- get
- list
- patch
- update
- watch
- apiGroups: ["coordination.k8s.io"]
resources:
- leases # Only if Patroni tries to use K8s Leases
verbs:
- create
- get
- list
- update
- delete
- watch
- patch
# Patroni needs to watch and manage config maps
- apiGroups:
- ""
@ -301,6 +322,15 @@ rules:
- services
verbs:
- create
# to check nodes for node readiness label
- apiGroups:
- ""
resources:
- nodes
verbs:
- get
- list
- watch
# to grant privilege to run privileged pods (not needed by default)
#- apiGroups:
# - extensions