# This configuration is used to authorize system:admin to proxy member clusters, # if you don't need it, you can remove it from karmada control plane. apiVersion: rbac.authorization.k8s.io/v1 kind: ClusterRole metadata: name: cluster-proxy-admin rules: - apiGroups: - 'cluster.karmada.io' resources: - clusters/proxy verbs: - '*' --- apiVersion: rbac.authorization.k8s.io/v1 kind: ClusterRoleBinding metadata: name: cluster-proxy-admin roleRef: apiGroup: rbac.authorization.k8s.io kind: ClusterRole name: cluster-proxy-admin subjects: - kind: User name: "system:admin"