33 lines
795 B
YAML
33 lines
795 B
YAML
{{- /*
|
|
# Copyright (c) HashiCorp, Inc.
|
|
# SPDX-License-Identifier: BUSL-1.1
|
|
|
|
# auto generated by sync-rbac.sh from ./config/rbac/hcpauth_viewer_role.yaml -- do not edit
|
|
*/ -}}
|
|
|
|
apiVersion: rbac.authorization.k8s.io/v1
|
|
kind: ClusterRole
|
|
metadata:
|
|
name: {{ printf "%s-%s" (include "vso.chart.fullname" .) "hcpauth-viewer-role" }}
|
|
labels:
|
|
app.kubernetes.io/component: rbac
|
|
# allow for selecting on the canonical name
|
|
vso.hashicorp.com/role-instance: hcpauth-viewer-role
|
|
vso.hashicorp.com/aggregate-to-viewer: "true"
|
|
{{- include "vso.chart.labels" . | nindent 4 }}
|
|
rules:
|
|
- apiGroups:
|
|
- secrets.hashicorp.com
|
|
resources:
|
|
- hcpauths
|
|
verbs:
|
|
- get
|
|
- list
|
|
- watch
|
|
- apiGroups:
|
|
- secrets.hashicorp.com
|
|
resources:
|
|
- hcpauths/status
|
|
verbs:
|
|
- get
|