Skip to content

Commit eada272

Browse files
authored
fix: Add RBAC permission to patch events (#649)
* fix: Add RBAC permission to patch events * changelog
1 parent fc7d8f0 commit eada272

File tree

2 files changed

+4
-0
lines changed

2 files changed

+4
-0
lines changed

CHANGELOG.md

Lines changed: 3 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -34,6 +34,8 @@
3434
- The default Kubernetes cluster domain name is now fetched from the kubelet API unless explicitly configured.
3535
- This requires operators to have the RBAC permission to get nodes/proxy in the apiGroup "". The helm-chart takes care of this.
3636
- The CLI argument `--kubernetes-node-name` or env variable `KUBERNETES_NODE_NAME` needs to be set. The helm-chart takes care of this.
37+
- The operator helm-chart now grants RBAC `patch` permissions on `events.k8s.io/events`,
38+
so events can be aggregated (e.g. "error happened 10 times over the last 5 minutes") ([#649]).
3739

3840
### Fixed
3941

@@ -59,6 +61,7 @@
5961
[#643]: https://github.com/stackabletech/superset-operator/pull/643
6062
[#644]: https://github.com/stackabletech/superset-operator/pull/644
6163
[#646]: https://github.com/stackabletech/superset-operator/pull/646
64+
[#649]: https://github.com/stackabletech/superset-operator/pull/649
6265

6366
## [25.3.0] - 2025-03-21
6467

deploy/helm/superset-operator/templates/roles.yaml

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -165,6 +165,7 @@ rules:
165165
- events
166166
verbs:
167167
- create
168+
- patch
168169
{{ if .Capabilities.APIVersions.Has "security.openshift.io/v1" }}
169170
- apiGroups:
170171
- security.openshift.io

0 commit comments

Comments
 (0)