From 782916b7e89183aa6229be4d35130c9b953b12e1 Mon Sep 17 00:00:00 2001 From: Shuting Zhao Date: Thu, 12 Dec 2019 17:45:02 -0800 Subject: [PATCH] add clusterrole to access policyviolation --- definitions/install.yaml | 10 ++++++++++ 1 file changed, 10 insertions(+) diff --git a/definitions/install.yaml b/definitions/install.yaml index 6776c8585b..7c7d1fe95e 100644 --- a/definitions/install.yaml +++ b/definitions/install.yaml @@ -421,6 +421,16 @@ subjects: name: kyverno-service-account namespace: kyverno --- +apiVersion: rbac.authorization.k8s.io/v1beta1 +kind: ClusterRole +metadata: + name: policyviolation +rules: +- apiGroups: ["kyverno.io"] + resources: + - policyviolations + verbs: ["get", "list", "watch"] +--- apiVersion: v1 kind: ConfigMap metadata: