create the service account and roles even if the rbac is not enabled. it will just be ignored
parent
80cfeea957
commit
a6a14e7f77
|
@ -43,9 +43,7 @@ spec:
|
|||
securityContext:
|
||||
runAsUser: {{ netchecker_agent_user | default('0') }}
|
||||
runAsGroup: {{ netchecker_agent_group | default('0') }}
|
||||
{% if rbac_enabled %}
|
||||
serviceAccountName: netchecker-agent
|
||||
{% endif %}
|
||||
updateStrategy:
|
||||
rollingUpdate:
|
||||
maxUnavailable: 100%
|
||||
|
|
|
@ -47,9 +47,7 @@ spec:
|
|||
securityContext:
|
||||
runAsUser: {{ netchecker_agent_user | default('0') }}
|
||||
runAsGroup: {{ netchecker_agent_group | default('0') }}
|
||||
{% if rbac_enabled %}
|
||||
serviceAccountName: netchecker-agent
|
||||
{% endif %}
|
||||
updateStrategy:
|
||||
rollingUpdate:
|
||||
maxUnavailable: 100%
|
||||
|
|
|
@ -21,9 +21,7 @@ spec:
|
|||
kubernetes.io/cluster-service: "true"
|
||||
version: v{{ registry_proxy_image_tag }}
|
||||
spec:
|
||||
{% if rbac_enabled %}
|
||||
serviceAccountName: registry-proxy
|
||||
{% endif %}
|
||||
containers:
|
||||
- name: registry-proxy
|
||||
image: {{ registry_proxy_image_repo }}:{{ registry_proxy_image_tag }}
|
||||
|
|
|
@ -22,9 +22,7 @@ spec:
|
|||
version: v{{ registry_image_tag }}
|
||||
kubernetes.io/cluster-service: "true"
|
||||
spec:
|
||||
{% if rbac_enabled %}
|
||||
serviceAccountName: registry
|
||||
{% endif %}
|
||||
containers:
|
||||
- name: registry
|
||||
image: {{ registry_image_repo }}:{{ registry_image_tag }}
|
||||
|
|
Loading…
Reference in New Issue