service-account.yaml 699 B

1234567891011121314151617181920212223242526272829
  1. #hack for delete pod master after migration
  2. ---
  3. kind: ClusterRole
  4. apiVersion: rbac.authorization.k8s.io/v1
  5. metadata:
  6. name: seaweedfs-rw-cr
  7. rules:
  8. - apiGroups: [""]
  9. resources: ["pods"]
  10. verbs: ["get", "list", "watch", "create", "update", "patch", "delete"]
  11. ---
  12. apiVersion: v1
  13. kind: ServiceAccount
  14. metadata:
  15. name: seaweedfs-rw-sa
  16. namespace: {{ .Release.Namespace }}
  17. ---
  18. kind: ClusterRoleBinding
  19. apiVersion: rbac.authorization.k8s.io/v1
  20. metadata:
  21. name: system:serviceaccount:seaweedfs-rw-sa:default
  22. subjects:
  23. - kind: ServiceAccount
  24. name: seaweedfs-rw-sa
  25. namespace: {{ .Release.Namespace }}
  26. roleRef:
  27. apiGroup: rbac.authorization.k8s.io
  28. kind: ClusterRole
  29. name: seaweedfs-rw-cr