Skip to content

Commit 1f50d9d

Browse files
committed
Adds delete and patch permissions to clusterroles and clusterrolebindings
1 parent 6d8ec92 commit 1f50d9d

File tree

3 files changed

+7
-3
lines changed

3 files changed

+7
-3
lines changed

bundle/manifests/external-secrets-operator.clusterserviceversion.yaml

Lines changed: 4 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -205,7 +205,7 @@ metadata:
205205
categories: Security
206206
console.openshift.io/disable-operand-delete: "true"
207207
containerImage: openshift.io/external-secrets-operator:latest
208-
createdAt: "2025-07-31T09:00:51Z"
208+
createdAt: "2025-08-01T10:58:49Z"
209209
features.operators.openshift.io/cnf: "false"
210210
features.operators.openshift.io/cni: "false"
211211
features.operators.openshift.io/csi: "false"
@@ -552,8 +552,10 @@ spec:
552552
- roles
553553
verbs:
554554
- create
555+
- delete
555556
- get
556557
- list
558+
- patch
557559
- update
558560
- watch
559561
- apiGroups:
@@ -635,7 +637,7 @@ spec:
635637
value: ghcr.io/external-secrets/bitwarden-sdk-server:v0.4.2
636638
- name: BITWARDEN_SDK_SERVER_IMAGE_VERSION
637639
value: 0.4.2
638-
image: openshift.io/external-secrets-operator:latest
640+
image: quay.io/bharath-b-rh/external-secrets-operator:latest
639641
livenessProbe:
640642
httpGet:
641643
path: /healthz

config/rbac/role.yaml

Lines changed: 2 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -212,7 +212,9 @@ rules:
212212
- roles
213213
verbs:
214214
- create
215+
- delete
215216
- get
216217
- list
218+
- patch
217219
- update
218220
- watch

pkg/controller/external_secrets/controller.go

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -96,7 +96,7 @@ type Reconciler struct {
9696
// +kubebuilder:rbac:groups=operator.openshift.io,resources=externalsecrets/finalizers,verbs=update
9797
// +kubebuilder:rbac:groups=coordination.k8s.io,resources=leases,verbs=get;list;watch;create;update
9898

99-
// +kubebuilder:rbac:groups=rbac.authorization.k8s.io,resources=roles;rolebindings;clusterroles;clusterrolebindings,verbs=get;list;watch;create;update
99+
// +kubebuilder:rbac:groups=rbac.authorization.k8s.io,resources=roles;rolebindings;clusterroles;clusterrolebindings,verbs=get;list;watch;create;update;patch;delete
100100
// +kubebuilder:rbac:groups=admissionregistration.k8s.io,resources=validatingwebhookconfigurations,verbs=get;list;watch;create;update
101101
// +kubebuilder:rbac:groups="",resources=events;secrets;services;serviceaccounts,verbs=get;list;watch;create;update
102102
// +kubebuilder:rbac:groups=apps,resources=deployments,verbs=get;list;watch;create;update

0 commit comments

Comments
 (0)