You can not select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.

51 lines
836 B

  1. ---
  2. apiVersion: v1
  3. kind: ServiceAccount
  4. metadata:
  5. name: flannel
  6. namespace: "kube-system"
  7. ---
  8. kind: ClusterRole
  9. apiVersion: rbac.authorization.k8s.io/v1beta1
  10. metadata:
  11. name: flannel
  12. rules:
  13. - apiGroups:
  14. - ""
  15. resources:
  16. - pods
  17. verbs:
  18. - get
  19. - apiGroups:
  20. - ""
  21. resources:
  22. - nodes
  23. verbs:
  24. - list
  25. - watch
  26. - apiGroups:
  27. - ""
  28. resources:
  29. - nodes/status
  30. verbs:
  31. - patch
  32. - apiGroups:
  33. - policy
  34. resourceNames:
  35. - privileged
  36. resources:
  37. - podsecuritypolicies
  38. verbs:
  39. - use
  40. ---
  41. kind: ClusterRoleBinding
  42. apiVersion: rbac.authorization.k8s.io/v1beta1
  43. metadata:
  44. name: flannel
  45. roleRef:
  46. apiGroup: rbac.authorization.k8s.io
  47. kind: ClusterRole
  48. name: flannel
  49. subjects:
  50. - kind: ServiceAccount
  51. name: flannel
  52. namespace: "kube-system"