elemental-operator/config/rbac/patches
Francesco Giudici de3c37dfc6
RBAC: restrict SeedImage controller auth to fleet-default (#864)
* RBAC: restrict SeedImage controller auth to fleet-default

do not allow the seedimage-controller to operate on pods, services and
configmaps outside of the fleet-default namespace.

Fixes #457

Signed-off-by: Francesco Giudici <francesco.giudici@suse.com>

* RBAC: move all rbac resources to rbac.yaml

Also have all of them collected and generated via kustomize

Signed-off-by: Francesco Giudici <francesco.giudici@suse.com>

---------

Signed-off-by: Francesco Giudici <francesco.giudici@suse.com>
2024-10-07 09:23:50 +02:00
..
name_in_role.yaml Kubebuilder: Run new code and generate RBAC (#203) 2022-12-12 12:15:22 +01:00
name_in_rolebinding.yaml RBAC: restrict SeedImage controller auth to fleet-default (#864) 2024-10-07 09:23:50 +02:00