diff --git a/charts/kubechecks/templates/role.yaml b/charts/kubechecks/templates/role.yaml new file mode 100644 index 00000000..dc7b024c --- /dev/null +++ b/charts/kubechecks/templates/role.yaml @@ -0,0 +1,8 @@ +apiVersion: rbac.authorization.k8s.io/v1 +kind: Role +metadata: + name: {{ include "kubechecks.fullname" . }} +rules: + - apiGroups: ['*'] + resources: ['applications', 'appprojects', 'services'] + verbs: ['*'] diff --git a/charts/kubechecks/templates/rolebinding.yaml b/charts/kubechecks/templates/rolebinding.yaml new file mode 100644 index 00000000..b0375563 --- /dev/null +++ b/charts/kubechecks/templates/rolebinding.yaml @@ -0,0 +1,11 @@ +apiVersion: rbac.authorization.k8s.io/v1 +kind: RoleBinding +metadata: + name: {{ include "kubechecks.fullname" . }} +roleRef: + apiGroup: rbac.authorization.k8s.io + kind: Role + name: {{ include "kubechecks.fullname" . }} +subjects: + - kind: ServiceAccount + name: {{ include "kubechecks.serviceAccountName" . }}