perm: manage nodes and daemonsets with ci

This commit is contained in:
2022-05-27 12:42:10 +02:00
parent a532036457
commit bf43e01ab2

3
ci.tf
View File

@@ -38,6 +38,7 @@ resource "kubernetes_cluster_role" "ci_cd" {
"persistentvolumeclaims", "persistentvolumeclaims",
"pods", "pods",
"namespaces", "namespaces",
"nodes",
"secrets", "secrets",
"serviceaccounts", "serviceaccounts",
"services", "services",
@@ -48,8 +49,10 @@ resource "kubernetes_cluster_role" "ci_cd" {
rule { rule {
api_groups = ["apps"] api_groups = ["apps"]
resources = [ resources = [
"daemonsets",
"deployments", "deployments",
"replicasets", # needed for 'helm upgrade --wait' "replicasets", # needed for 'helm upgrade --wait'
"statefulsets",
] ]
verbs = ["create", "delete", "get", "list", "patch", "update", "watch"] verbs = ["create", "delete", "get", "list", "patch", "update", "watch"]
} }