Kubernetes Prow Robot
da8a78ebd2
Merge pull request #113267 from hoskeri/cleanup-kubelet-admin-role
...
Remove unused RBAC rule from system:kubelet-api-admin
2022-12-09 14:33:33 -08:00
Antonio Ojea
962dbbba48
fix glbc jobs
...
use latest stable version
add permissions for endpointslices
2022-11-15 13:39:59 +00:00
Abhijit Hoskeri
9f2ac979ae
Remove unused RBAC rule from system:kubelet-api-admin
...
cd54bd94e9
removes the
handlers for /spec from the kubelet server.
Cleanup the RBAC rules as well.
Change-Id: Id6befbcacec27ad383e336b7189289f55c1c0a68
2022-10-21 11:57:07 -07:00
Swetha Repakula
2fcbb92681
Add leases permissions to glbc rbac
...
* required for leader election for ingress-gce
2022-05-10 15:49:15 -07:00
Swetha Repakula
6e95ac1ce9
Add service/status
glbc rbac permissions
2021-03-15 13:01:06 -07:00
Swetha Repakula
a8c5110f65
Add GLBC roles for IngressClass & GCPIngressParams
2021-03-10 16:36:54 -08:00
knight42
91bd11681a
fix: correct glbc ClusterRole
...
Signed-off-by: knight42 <anonymousknight96@gmail.com>
2020-09-24 16:14:36 +08:00
Spencer Hance
b13898d6e9
Add rbac patch permissions for system:controller:glbc ingresses/status
2020-08-20 20:34:23 -07:00
Łukasz Osipiuk
02915ef179
Remove endpoints RBAC for Cluster Autoscaler
2020-03-12 17:56:45 +01:00
Jordan Liggitt
5c6371502a
Update addon permissions
2019-12-13 12:23:39 -05:00
Mayank Kumar
fef9e413df
Make cluster auto scaler use leases
2019-11-29 13:58:24 +01:00
Łukasz Osipiuk
d02cc41644
Add read-only rbac for csinodes to cluster-autoscaler
2019-09-06 17:38:48 +02:00
Kubernetes Prow Robot
4e0b76469f
Merge pull request #75638 from ramnar/bugfix_24thMarch
...
Bug fix 72757.Removed deprecated label kubernetes.io/cluster-service
2019-06-20 06:54:49 -07:00
Jake Sanders
8bd0b45eae
use static token to authenticate glbc
2019-05-01 22:24:48 -07:00
ramnar
0ec6eb6177
Bug fix 72757.Removed deprecated label kubernetes.io/cluster-service
2019-03-24 09:41:47 +05:30
Łukasz Osipiuk
80e66596a5
Grant permissions for batch/job to cluster-autoscaler
2018-10-16 10:46:46 +02:00
Karol Gołąb
f8fa60e9ea
Limit access to configmaps
2018-06-08 18:02:37 +02:00
Karol Gołąb
c70b554af9
Create system:cluster-autoscaler account & role and introduce it to CA start-up script
2018-06-08 14:15:52 +02:00
Jordan Liggitt
c4e63cb777
gce: split legacy kubelet node role binding and bootstrapper role binding
2017-12-13 21:56:18 -05:00
Mike Danese
962e1e2f6d
gce: readd kubelet-bootstrap to kubelet user
2017-11-14 13:46:08 -08:00
Mike Danese
3f7e1cccd2
don't add kubelet legacy binding if we aren't registering the master kubelet
2017-10-26 13:30:59 -07:00
Mike Danese
8b3a8adb17
reorganize rbac addon dir into subdirectories
2017-10-26 13:26:52 -07:00
Chen Rong
d23df051e1
update to rbac v1 in yaml file
2017-08-21 17:29:37 +08:00
Jacob Simpson
334de1cbe1
Auto approve kubelet certificate signing requests.
2017-06-16 08:47:12 -07:00
CJ Cullen
eba50dfeb6
Replace todo-grabbag binding w/ more specific heapster roles/bindings.
...
Move kubelet binding to the rbac folder.
2017-06-06 09:03:09 -07:00
Mike Danese
ae91ecb62e
enable tls bootstrap in GCE/GKE
2017-06-01 09:17:32 -07:00
Jordan Liggitt
87a8c21995
Give apiserver full access to kubelet API
2017-03-17 18:05:19 -04:00
Zihong Zheng
d4fa046d56
Adds the new addon-manager labels on cluster addon templates
2017-02-24 16:53:12 -08:00
Jordan Liggitt
2a76fa1c8f
Switch RBAC subject apiVersion to apiGroup in v1beta1
2017-02-13 15:33:09 -05:00
Mike Danese
c8ce55fef4
Revert "Merge pull request #41132 from kubernetes/revert-40893-kubelet-auth"
...
This reverts commit fd56078298
, reversing
changes made to d953402cdf
.
2017-02-09 15:55:12 -08:00
Aleksandra Malinowska
1841e5b2e0
Revert "remove second CA used for kubelet auth in favor of webhook auth"
2017-02-08 13:22:10 +01:00
Mike Danese
86d9493747
remove second CA used for kubelet auth in favor of webhook auth
2017-02-07 13:22:01 -08:00