@@ -94,6 +94,12 @@ rules:
9494 - landscaperdeployments
9595 verbs :
9696 - " *"
97+ - apiGroups :
98+ - landscaper.services.openmcp.cloud
99+ resources :
100+ - landscapers
101+ verbs :
102+ - " *"
97103---
98104kind : ClusterRoleBinding
99105apiVersion : {{ include "rbacversion" . }}
@@ -146,7 +152,7 @@ roleRef:
146152{{- end }}
147153{{- end }}
148154{{- if not .Values.webhooks.disabled }}
149- apiVersion : rbac.authorization.k8s.io/v1
155+ apiVersion : {{ include "rbacversion" . }}
150156kind : Role
151157metadata :
152158 name : {{ include "mcp-operator.fullname" . }}
@@ -159,7 +165,7 @@ rules:
159165 resourceNames :
160166 - {{ include "mcp-operator.fullname" . }}-webhooks-tls
161167---
162- apiVersion : rbac.authorization.k8s.io/v1
168+ apiVersion : {{ include "rbacversion" . }}
163169kind : RoleBinding
164170metadata :
165171 name : {{ include "mcp-operator.fullname" . }}
@@ -174,4 +180,33 @@ subjects:
174180 name : mcp-operator
175181 namespace : {{ .Release.Namespace }}
176182---
177- {{- end }}
183+ {{- end }}
184+ apiVersion : {{ include "rbacversion" . }}
185+ kind : ClusterRole
186+ metadata :
187+ name : {{ include "mcp-operator.v2bridge.clusterrole" . }}
188+ labels :
189+ {{- include "mcp-operator.labels" . | nindent 4 }}
190+ rules :
191+ - apiGroups :
192+ - clusters.openmcp.cloud
193+ resources :
194+ - " *"
195+ verbs :
196+ - " *"
197+ ---
198+ kind : ClusterRoleBinding
199+ apiVersion : {{ include "rbacversion" . }}
200+ metadata :
201+ name : {{ include "mcp-operator.v2bridge.clusterrole" . }}
202+ labels :
203+ {{- include "mcp-operator.labels" . | nindent 4 }}
204+ subjects :
205+ - kind : ServiceAccount
206+ name : mcp-operator
207+ namespace : {{ .Release.Namespace }}
208+ roleRef :
209+ kind : ClusterRole
210+ name : {{ include "mcp-operator.v2bridge.clusterrole" . }}
211+ apiGroup : rbac.authorization.k8s.io
212+ ---
0 commit comments