blob: ce27cccd17653c4d707fd975687a8bf61c945b80 [file] [log] [blame]
apiVersion: rbac.authorization.k8s.io/v1
kind: Role
metadata:
name: secrets
namespace: {{ .Release.Namespace }}
rules:
- apiGroups: [""]
resources: ["secrets"]
verbs: ["get", "watch", "list", "patch", "update"]
---
apiVersion: rbac.authorization.k8s.io/v1
kind: RoleBinding
metadata:
name: secrets
namespace: {{ .Release.Namespace }}
subjects:
- kind: ServiceAccount
name: {{ .Values.serviceAccountName }}
namespace: {{ .Release.Namespace }}
roleRef:
kind: Role
name: secrets
apiGroup: rbac.authorization.k8s.io