1234567891011121314151617181920212223242526272829303132 |
- # This is required so that old clusters don't remove required bindings for 1.5
- # kubelets to function.
- apiVersion: rbac.authorization.k8s.io/v1
- kind: ClusterRoleBinding
- metadata:
- name: kubelet-cluster-admin
- labels:
- kubernetes.io/cluster-service: "true"
- addonmanager.kubernetes.io/mode: EnsureExists
- roleRef:
- apiGroup: rbac.authorization.k8s.io
- kind: ClusterRole
- name: system:node
- subjects: []
- ---
- # This is required so that new clusters still have bootstrap permissions
- apiVersion: rbac.authorization.k8s.io/v1
- kind: ClusterRoleBinding
- metadata:
- name: kubelet-bootstrap
- labels:
- kubernetes.io/cluster-service: "true"
- addonmanager.kubernetes.io/mode: Reconcile
- roleRef:
- apiGroup: rbac.authorization.k8s.io
- kind: ClusterRole
- name: system:node-bootstrapper
- subjects:
- - apiGroup: rbac.authorization.k8s.io
- kind: User
- name: kubelet
|