@@ -86,7 +86,7 @@ system:
86
86
# Cluster Role Resources
87
87
# ==========================
88
88
clusterRoles :
89
- connector -manager-creator :
89
+ konnector -manager-creator :
90
90
rules :
91
91
- apiGroups : [""]
92
92
resources : ["configmaps", "services", "serviceaccounts"]
@@ -100,7 +100,7 @@ system:
100
100
- apiGroups : ["rbac.authorization.k8s.io"]
101
101
resources : ["clusterroles", "roles", "rolebindings", "clusterrolebindings"]
102
102
verbs : ["create", "patch", "delete"]
103
- cluster-manager :
103
+ konnector- cluster-manager :
104
104
rules :
105
105
- apiGroups : [""]
106
106
resources : ["namespaces", "secrets", "configmaps"]
@@ -111,7 +111,7 @@ system:
111
111
- apiGroups : ["admissionregistration.k8s.io"]
112
112
resources : ["validatingwebhookconfigurations"]
113
113
verbs : ["update", "list", "watch", "get", "create", "patch", "delete"]
114
- read-inventory :
114
+ konnector- read-inventory :
115
115
rules :
116
116
- apiGroups : [""]
117
117
resources : ["namespaces", "pods", "serviceaccounts", "endpoints", "services", "configmaps", "secrets", "nodes", "nodes/proxy"]
@@ -128,22 +128,22 @@ system:
128
128
- apiGroups : ["networking.k8s.io"]
129
129
resources : ["networkpolicies", "ingresses"]
130
130
verbs : ["get", "list", "watch"]
131
- crd-manager :
131
+ konnector- crd-manager :
132
132
rules :
133
133
- apiGroups : ["apiextensions.k8s.io"]
134
134
resources : ["customresourcedefinitions"]
135
135
verbs : ["create", "get", "patch", "delete"]
136
- node-vm-discovery :
136
+ konnector- node-vm-discovery :
137
137
rules :
138
138
- apiGroups : [""]
139
139
resources : ["nodes"]
140
140
verbs : ["get", "list", "patch"]
141
- aro-openshift-permissions :
141
+ konnector- aro-openshift-permissions :
142
142
rules :
143
143
- apiGroups : ["aro.openshift.io"]
144
144
resources : ["clusters"]
145
145
verbs : ["get", "list", "watch"]
146
- general-openshift-permissions :
146
+ konnector- general-openshift-permissions :
147
147
rules :
148
148
- apiGroups : ["config.openshift.io"]
149
149
resources : ["clusterversions", "apiservers", "authentications", "clusteroperators", "oauths", "infrastructures"]
@@ -160,7 +160,7 @@ system:
160
160
- apiGroups : ["security.openshift.io"]
161
161
resources : ["securitycontextconstraints"]
162
162
verbs : ["get", "list", "watch"]
163
- otel :
163
+ konnector- otel :
164
164
rules :
165
165
- apiGroups : [""]
166
166
resources : ["nodes/stats"]
@@ -179,10 +179,14 @@ system:
179
179
verbs : ["get", "list", "watch"]
180
180
181
181
extraClusterRoleBindings :
182
- openshift-anyuid-crole-binding :
182
+ konnector- openshift-anyuid :
183
183
roleRef :
184
184
apiGroup : security.openshift.io/v1
185
185
name : system:openshift:scc:anyuid
186
+ konnector-openshift-privileged :
187
+ roleRef :
188
+ apiGroup : security.openshift.io/v1
189
+ name : system:openshift:scc:privileged
186
190
187
191
# ==========================
188
192
# Secrets Resources
0 commit comments