homelab/kubernetes/apps/production/drone/runner/rbac.yaml

41 lines
630 B
YAML
Raw Normal View History

kind: Role
apiVersion: rbac.authorization.k8s.io/v1
metadata:
2024-09-23 22:06:16 +00:00
name: drone
2024-09-23 22:14:50 +00:00
namespace: drone-ci
rules:
- apiGroups:
- ""
resources:
- secrets
verbs:
- create
- delete
- apiGroups:
- ""
resources:
- pods
- pods/log
verbs:
- get
- create
- delete
- list
- watch
- update
---
kind: RoleBinding
apiVersion: rbac.authorization.k8s.io/v1
metadata:
name: drone
2024-09-23 22:14:50 +00:00
namespace: drone-ci
subjects:
- kind: ServiceAccount
name: default
2024-09-23 22:14:50 +00:00
namespace: drone-ci
roleRef:
kind: Role
name: drone
apiGroup: rbac.authorization.k8s.io