File tree Expand file tree Collapse file tree 1 file changed +18
-1
lines changed
internal/testrunner/runners/system/servicedeployer Expand file tree Collapse file tree 1 file changed +18
-1
lines changed Original file line number Diff line number Diff line change @@ -171,6 +171,7 @@ rules:
171171 - pods
172172 - services
173173 - configmaps
174+ - serviceaccounts
174175 verbs: ["get", "list", "watch"]
175176 # Enable this rule only if planing to use kubernetes_secrets provider
176177 #- apiGroups: [""]
@@ -203,6 +204,22 @@ rules:
203204 - "/metrics"
204205 verbs:
205206 - get
207+ - apiGroups: ["rbac.authorization.k8s.io"]
208+ resources:
209+ - clusterrolebindings
210+ - clusterroles
211+ - rolebindings
212+ - roles
213+ verbs: ["get", "list", "watch"]
214+ - apiGroups: ["networking.k8s.io"]
215+ resources:
216+ - ingressclasses
217+ - ingresses
218+ verbs: ["get", "list", "watch"]
219+ - apiGroups: ["policy"]
220+ resources:
221+ - podsecuritypolicies
222+ verbs: ["get", "list", "watch"]
206223---
207224apiVersion: rbac.authorization.k8s.io/v1
208225kind: Role
@@ -241,4 +258,4 @@ metadata:
241258 namespace: kube-system
242259 labels:
243260 k8s-app: elastic-agent
244- ---
261+ ---
You can’t perform that action at this time.
0 commit comments