[cilium] add custom vars for clusterrole cilium operator (#10267)
parent
872e173887
commit
0405af1107
|
@ -243,3 +243,22 @@
|
|||
|
||||
# -- Whether to enable CNP status updates.
|
||||
# cilium_disable_cnp_status_updates: true
|
||||
|
||||
# A list of extra rules variables to add to clusterrole for cilium operator, formatted like:
|
||||
# cilium_clusterrole_rules_operator_extra_vars:
|
||||
# - apiGroups:
|
||||
# - '""'
|
||||
# resources:
|
||||
# - pods
|
||||
# verbs:
|
||||
# - delete
|
||||
# - apiGroups:
|
||||
# - '""'
|
||||
# resources:
|
||||
# - nodes
|
||||
# verbs:
|
||||
# - list
|
||||
# - watch
|
||||
# resourceNames:
|
||||
# - toto
|
||||
# cilium_clusterrole_rules_operator_extra_vars: []
|
||||
|
|
|
@ -290,3 +290,22 @@ cilium_certgen_args:
|
|||
hubble-relay-client-cert-validity-duration: 94608000s
|
||||
hubble-relay-client-cert-secret-name: hubble-relay-client-certs
|
||||
hubble-relay-server-cert-generate: false
|
||||
|
||||
# A list of extra rules variables to add to clusterrole for cilium operator, formatted like:
|
||||
# cilium_clusterrole_rules_operator_extra_vars:
|
||||
# - apiGroups:
|
||||
# - '""'
|
||||
# resources:
|
||||
# - pods
|
||||
# verbs:
|
||||
# - delete
|
||||
# - apiGroups:
|
||||
# - '""'
|
||||
# resources:
|
||||
# - nodes
|
||||
# verbs:
|
||||
# - list
|
||||
# - watch
|
||||
# resourceNames:
|
||||
# - toto
|
||||
cilium_clusterrole_rules_operator_extra_vars: []
|
||||
|
|
|
@ -147,3 +147,23 @@ rules:
|
|||
- ciliumnetworkpolicies.cilium.io
|
||||
- ciliumnodes.cilium.io
|
||||
{% endif %}
|
||||
{% for rules in cilium_clusterrole_rules_operator_extra_vars %}
|
||||
- apiGroups:
|
||||
{% for api in rules['apiGroups'] %}
|
||||
- {{ api }}
|
||||
{% endfor %}
|
||||
resources:
|
||||
{% for resource in rules['resources'] %}
|
||||
- {{ resource }}
|
||||
{% endfor %}
|
||||
verbs:
|
||||
{% for verb in rules['verbs'] %}
|
||||
- {{ verb }}
|
||||
{% endfor %}
|
||||
{% if 'resourceNames' in rules %}
|
||||
resourceNames:
|
||||
{% for resourceName in rules['resourceNames'] %}
|
||||
- {{ resourceName }}
|
||||
{% endfor %}
|
||||
{% endif %}
|
||||
{% endfor %}
|
||||
|
|
Loading…
Reference in New Issue