kind: ClusterRole apiVersion: rbac.authorization.k8s.io/v1beta1 metadata: name: squash-operator rules: - apiGroups: - app.example.com resources: - "*" verbs: - "*" - apiGroups: - "" resources: - pods - services - endpoints - persistentvolumeclaims - events - configmaps - secrets verbs: - "*" - apiGroups: - apps resources: - deployments - daemonsets - replicasets - statefulsets verbs: - "*" --- kind: ClusterRoleBinding apiVersion: rbac.authorization.k8s.io/v1beta1 metadata: name: squash-operator subjects: - kind: ServiceAccount name: default namespace: operator-squash roleRef: kind: ClusterRole name: squash-operator apiGroup: rbac.authorization.k8s.io