perm: manage nodes and daemonsets with ci
This commit is contained in:
3
ci.tf
3
ci.tf
@@ -38,6 +38,7 @@ resource "kubernetes_cluster_role" "ci_cd" {
|
|||||||
"persistentvolumeclaims",
|
"persistentvolumeclaims",
|
||||||
"pods",
|
"pods",
|
||||||
"namespaces",
|
"namespaces",
|
||||||
|
"nodes",
|
||||||
"secrets",
|
"secrets",
|
||||||
"serviceaccounts",
|
"serviceaccounts",
|
||||||
"services",
|
"services",
|
||||||
@@ -48,8 +49,10 @@ resource "kubernetes_cluster_role" "ci_cd" {
|
|||||||
rule {
|
rule {
|
||||||
api_groups = ["apps"]
|
api_groups = ["apps"]
|
||||||
resources = [
|
resources = [
|
||||||
|
"daemonsets",
|
||||||
"deployments",
|
"deployments",
|
||||||
"replicasets", # needed for 'helm upgrade --wait'
|
"replicasets", # needed for 'helm upgrade --wait'
|
||||||
|
"statefulsets",
|
||||||
]
|
]
|
||||||
verbs = ["create", "delete", "get", "list", "patch", "update", "watch"]
|
verbs = ["create", "delete", "get", "list", "patch", "update", "watch"]
|
||||||
}
|
}
|
||||||
|
|||||||
Reference in New Issue
Block a user