deploy-templates/templates/validation_webhook_rbac.yaml (38 lines of code) (raw):

apiVersion: rbac.authorization.k8s.io/v1 kind: ClusterRole metadata: labels: {{- include "cd-pipeline-operator.labels" . | nindent 4 }} name: edp-{{ .Values.name }}-{{ .Release.Namespace }}-validation-webhook rules: - apiGroups: - admissionregistration.k8s.io resources: - validatingwebhookconfigurations verbs: - get - update - patch - apiGroups: - "" resources: - namespaces verbs: - get - list - watch --- apiVersion: rbac.authorization.k8s.io/v1 kind: ClusterRoleBinding metadata: labels: {{- include "cd-pipeline-operator.labels" . | nindent 4 }} name: edp-{{ .Values.name }}-{{ .Release.Namespace }}-validation-webhook roleRef: apiGroup: rbac.authorization.k8s.io kind: ClusterRole name: edp-{{ .Values.name }}-{{ .Release.Namespace }}-validation-webhook subjects: - kind: ServiceAccount name: edp-{{ .Values.name }} namespace: {{ .Release.Namespace }}