30 lines
753 B
YAML
30 lines
753 B
YAML
# This rule is not used by the project operator itself.
|
|
# It is provided to allow the cluster admin to help manage permissions for users.
|
|
#
|
|
# Grants read-only access to devops.go17 resources.
|
|
# This role is intended for users who need visibility into these resources
|
|
# without permissions to modify them. It is ideal for monitoring purposes and limited-access viewing.
|
|
|
|
apiVersion: rbac.authorization.k8s.io/v1
|
|
kind: ClusterRole
|
|
metadata:
|
|
labels:
|
|
app.kubernetes.io/name: operator
|
|
app.kubernetes.io/managed-by: kustomize
|
|
name: accessbinding-viewer-role
|
|
rules:
|
|
- apiGroups:
|
|
- devops.go17
|
|
resources:
|
|
- accessbindings
|
|
verbs:
|
|
- get
|
|
- list
|
|
- watch
|
|
- apiGroups:
|
|
- devops.go17
|
|
resources:
|
|
- accessbindings/status
|
|
verbs:
|
|
- get
|