Browse Source

create the service account and roles even if the rbac is not enabled. it will just be ignored

pull/3102/head
Erwan Miran 7 years ago
parent
commit
a6a14e7f77
4 changed files with 0 additions and 8 deletions
  1. 2
      roles/kubernetes-apps/ansible/templates/netchecker-agent-ds.yml.j2
  2. 2
      roles/kubernetes-apps/ansible/templates/netchecker-agent-hostnet-ds.yml.j2
  3. 2
      roles/kubernetes-apps/registry/templates/registry-proxy-ds.yml.j2
  4. 2
      roles/kubernetes-apps/registry/templates/registry-rs.yml.j2

2
roles/kubernetes-apps/ansible/templates/netchecker-agent-ds.yml.j2

@ -43,9 +43,7 @@ spec:
securityContext:
runAsUser: {{ netchecker_agent_user | default('0') }}
runAsGroup: {{ netchecker_agent_group | default('0') }}
{% if rbac_enabled %}
serviceAccountName: netchecker-agent
{% endif %}
updateStrategy:
rollingUpdate:
maxUnavailable: 100%

2
roles/kubernetes-apps/ansible/templates/netchecker-agent-hostnet-ds.yml.j2

@ -47,9 +47,7 @@ spec:
securityContext:
runAsUser: {{ netchecker_agent_user | default('0') }}
runAsGroup: {{ netchecker_agent_group | default('0') }}
{% if rbac_enabled %}
serviceAccountName: netchecker-agent
{% endif %}
updateStrategy:
rollingUpdate:
maxUnavailable: 100%

2
roles/kubernetes-apps/registry/templates/registry-proxy-ds.yml.j2

@ -21,9 +21,7 @@ spec:
kubernetes.io/cluster-service: "true"
version: v{{ registry_proxy_image_tag }}
spec:
{% if rbac_enabled %}
serviceAccountName: registry-proxy
{% endif %}
containers:
- name: registry-proxy
image: {{ registry_proxy_image_repo }}:{{ registry_proxy_image_tag }}

2
roles/kubernetes-apps/registry/templates/registry-rs.yml.j2

@ -22,9 +22,7 @@ spec:
version: v{{ registry_image_tag }}
kubernetes.io/cluster-service: "true"
spec:
{% if rbac_enabled %}
serviceAccountName: registry
{% endif %}
containers:
- name: registry
image: {{ registry_image_repo }}:{{ registry_image_tag }}

Loading…
Cancel
Save