neon-operator/manifests/rbac.yaml

55 lines
1016 B
YAML

apiVersion: v1
kind: ServiceAccount
metadata:
name: neon-operator
---
apiVersion: rbac.authorization.k8s.io/v1
kind: ClusterRole
metadata:
name: neon-operator-cluster-role
rules:
- apiGroups:
- melenion.com
resources:
- neondatabases
verbs:
- "*"
- apiGroups: [""]
resources:
- pods
- services
- endpoints
- persistentvolumeclaims
- events
- configmaps
- secrets
- deployments
verbs:
- "*"
- apiGroups:
- apiextensions.k8s.io
resources:
- customresourcedefinitions
verbs:
- "*"
- apiGroups:
- apps
resources:
- deployments
- statefulsets
verbs:
- "*"
---
apiVersion: rbac.authorization.k8s.io/v1
kind: ClusterRoleBinding
metadata:
name: neon-operator-cluster-role-binding
roleRef:
apiGroup: rbac.authorization.k8s.io
kind: ClusterRole
name: neon-operator-cluster-role
subjects:
- kind: ServiceAccount
name: neon-operator
namespace: default