apiVersion: rbac.authorization.k8s.io/v1 kind: ClusterRole metadata: labels: app: clustered-cluster-manager app.kubernetes.io/name: clustered-cluster-manager version: 0.1.0 name: clustered-cluster-manager rules: - apiGroups: - 'cluster.security.io' resources: - 'managedclusters' verbs: - create - delete - get - list - patch - update - watch --- apiVersion: rbac.authorization.k8s.io/v1 kind: ClusterRoleBinding metadata: labels: app: clustered-cluster-manager app.kubernetes.io/name: clustered-cluster-manager version: 0.1.0 name: clustered-cluster-manager roleRef: apiGroup: rbac.authorization.k8s.io kind: ClusterRole name: clustered-cluster-manager subjects: - kind: ServiceAccount name: cluster-manager namespace: tensorsec