features: policyExceptions: enabled: true backgroundController: rbac: clusterRole: extraResources: - apiGroups: - '*' resources: - configmaps - networkpolicies - resourcequotas - secrets - roles - rolebindings - limitranges - namespaces - nodes - nodes/status - pods verbs: - create - update - patch - delete - get - list cleanupController: rbac: clusterRole: extraResources: - apiGroups: - '' resources: - pods