apiVersion: rbac.authorization.k8s.io/v1 kind: ClusterRole metadata: name: kyverno:rbac:admin:reports labels: rbac.authorization.k8s.io/aggregate-to-admin: "true" rules: - apiGroups: - kyverno.io resources: - admissionreports - clusteradmissionreports - backgroundscanreports - clusterbackgroundscanreports verbs: - create - delete - get - list - patch - update - watch - apiGroups: - reports.kyverno.io resources: - ephemeralreports - clusterephemeralreports verbs: - create - delete - get - list - patch - update - watch