{{- /* # Copyright (c) HashiCorp, Inc. # SPDX-License-Identifier: BUSL-1.1 # auto generated by sync-rbac.sh from ./config/rbac/vaultauth_viewer_role.yaml -- do not edit */ -}} apiVersion: rbac.authorization.k8s.io/v1 kind: ClusterRole metadata: name: {{ printf "%s-%s" (include "vso.chart.fullname" .) "vaultauth-viewer-role" }} labels: app.kubernetes.io/component: rbac # allow for selecting on the canonical name vso.hashicorp.com/role-instance: vaultauth-viewer-role vso.hashicorp.com/aggregate-to-viewer: "true" {{- include "vso.chart.labels" . | nindent 4 }} rules: - apiGroups: - secrets.hashicorp.com resources: - vaultauths verbs: - get - list - watch - apiGroups: - secrets.hashicorp.com resources: - vaultauths/status verbs: - get