23 lines
516 B
HCL
23 lines
516 B
HCL
resource "kubernetes_service_account" "this" {
|
|
metadata {
|
|
name = "kube-proxy"
|
|
namespace = "kube-system"
|
|
}
|
|
}
|
|
|
|
resource "kubernetes_cluster_role_binding" "this" {
|
|
metadata {
|
|
name = "kube-proxy-is-system-node-proxier"
|
|
}
|
|
role_ref {
|
|
api_group = "rbac.authorization.k8s.io"
|
|
kind = "ClusterRole"
|
|
name = "system:node-proxier"
|
|
}
|
|
subject {
|
|
kind = "ServiceAccount"
|
|
name = kubernetes_service_account.this.metadata.0.name
|
|
namespace = "kube-system"
|
|
}
|
|
}
|