features: policyExceptions: enabled: true admissionController: profiling: enabled: true serviceType: NodePort nodePort: 30950 backgroundController: rbac: clusterRole: extraResources: - apiGroups: - "*" resources: - configmaps - networkpolicies - resourcequotas - secrets - roles - rolebindings - limitranges - namespaces - nodes - nodes/status - pods verbs: - create - update - patch - delete - get - list cleanupController: rbac: clusterRole: extraResources: - apiGroups: - "" resources: - pods verbs: - list - delete