apiVersion: rbac.authorization.k8s.io/v1 kind: Role metadata: creationTimestamp: null name: t8c-operator rules: - apiGroups: - "" resources: - configmaps - endpoints - events - persistentvolumeclaims - pods - pods/exec - secrets - serviceaccounts - services verbs: - '*' - apiGroups: - apps resources: - daemonsets - deployments - statefulsets - replicasets verbs: - '*' - apiGroups: - apps resources: - deployments/finalizers verbs: - update - apiGroups: - extensions resources: - deployments verbs: - '*' - apiGroups: - "" resources: - namespaces verbs: - get - apiGroups: - policy resources: - podsecuritypolicies - poddisruptionbudgets verbs: - '*' - apiGroups: - rbac.authorization.k8s.io resources: - rolebindings - roles verbs: - '*' - apiGroups: - batch resources: - jobs verbs: - '*' - apiGroups: - monitoring.coreos.com resources: - servicemonitors verbs: - get - create - apiGroups: - charts.helm.k8s.io resources: - '*' verbs: - '*' - apiGroups: - networking.istio.io resources: - gateways - virtualservices verbs: - '*' - apiGroups: - networking.k8s.io resources: - ingresses verbs: - get - list - watch - apiGroups: - cert-manager.io resources: - certificates verbs: - '*' - apiGroups: - route.openshift.io resources: - routes - routes/custom-host verbs: - '*'