apiVersion: rbac.authorization.k8s.io/v1 kind: ClusterRole metadata: name: console-sa-role rules: - apiGroups: - "" resources: - secrets verbs: - get - watch - create - list - patch - update - apiGroups: - "" resources: - namespaces - pods - services - events - resourcequotas verbs: - get - watch - create - list - patch - apiGroups: - "storage.k8s.io" resources: - storageclasses verbs: - get - watch - create - list - patch - apiGroups: - apps resources: - statefulsets - deployments verbs: - get - create - list - patch - watch - update - delete - apiGroups: - batch resources: - jobs verbs: - get - create - list - patch - watch - update - delete - apiGroups: - "certificates.k8s.io" resources: - "certificatesigningrequests" - "certificatesigningrequests/approval" - "certificatesigningrequests/status" verbs: - update - create - get - apiGroups: - minio.min.io resources: - "*" verbs: - "*" - apiGroups: - min.io resources: - "*" verbs: - "*"