Skip to content

Commit 60ea526

Browse files
committed
fix: Add RBAC permission to patch events (#649)
* fix: Add RBAC permission to patch events * changelog
1 parent d0e1b67 commit 60ea526

File tree

2 files changed

+4
-0
lines changed

2 files changed

+4
-0
lines changed

CHANGELOG.md

Lines changed: 3 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -36,6 +36,8 @@
3636
- The default Kubernetes cluster domain name is now fetched from the kubelet API unless explicitly configured.
3737
- This requires operators to have the RBAC permission to get nodes/proxy in the apiGroup "". The helm-chart takes care of this.
3838
- The CLI argument `--kubernetes-node-name` or env variable `KUBERNETES_NODE_NAME` needs to be set. The helm-chart takes care of this.
39+
- The operator helm-chart now grants RBAC `patch` permissions on `events.k8s.io/events`,
40+
so events can be aggregated (e.g. "error happened 10 times over the last 5 minutes") ([#649]).
3941

4042
### Fixed
4143

@@ -61,6 +63,7 @@
6163
[#643]: https://github.com/stackabletech/superset-operator/pull/643
6264
[#644]: https://github.com/stackabletech/superset-operator/pull/644
6365
[#646]: https://github.com/stackabletech/superset-operator/pull/646
66+
[#649]: https://github.com/stackabletech/superset-operator/pull/649
6467

6568
## [25.3.0] - 2025-03-21
6669

deploy/helm/superset-operator/templates/roles.yaml

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -165,6 +165,7 @@ rules:
165165
- events
166166
verbs:
167167
- create
168+
- patch
168169
{{ if .Capabilities.APIVersions.Has "security.openshift.io/v1" }}
169170
- apiGroups:
170171
- security.openshift.io

0 commit comments

Comments
 (0)