kind: Role
apiVersion: rbac.authorization.k8s.io/v1
metadata:
name: drone
namespace: drone-ci
rules:
- apiGroups:
- ""
resources:
- secrets
verbs:
- create
- delete
- pods
- pods/log
- get
- list
- watch
- update
---
kind: RoleBinding
subjects:
- kind: ServiceAccount
name: default
roleRef:
apiGroup: rbac.authorization.k8s.io
apiVersion: v1
kind: ServiceAccount
name: drone-deploy-sa
namespace: public-services
name: drone-deployment-manager
- apiGroups: ["apps"]
resources: ["deployments"]
verbs: ["get", "list", "create", "update", "delete"]
name: drone-deployment-manager-binding