apiVersion: rbac.authorization.k8s.io/v1 kind: ClusterRole metadata: name: kyverno:rbac:admin:policies labels: rbac.authorization.k8s.io/aggregate-to-admin: "true" rules: - apiGroups: - kyverno.io resources: - cleanuppolicies - clustercleanuppolicies - policies - clusterpolicies verbs: - create - delete - get - list - patch - update - watch