--- # This role is required for e2e tests that generate and update a ClusterRole. apiVersion: rbac.authorization.k8s.io/v1 kind: ClusterRole metadata: name: kyverno:test-e2e rules: - apiGroups: - "*" resources: - clusterroles - rolebindings - clusterrolebindings verbs: - create - delete - get - list - patch - update - watch --- # This role binding is required for e2e tests that generate and update a ClusterRole. kind: ClusterRoleBinding apiVersion: rbac.authorization.k8s.io/v1 metadata: labels: app: kyverno name: kyverno:test-e2e roleRef: apiGroup: rbac.authorization.k8s.io kind: ClusterRole name: kyverno:test-e2e subjects: - kind: ServiceAccount name: kyverno-service-account namespace: kyverno