github.com/replicatedcom/ship@v0.50.0/integration/init/istio-1.0.3/expected/base/charts/security/templates/ClusterRole-istio-security-post-install-default.yaml (about) 1 apiVersion: rbac.authorization.k8s.io/v1beta1 2 kind: ClusterRole 3 metadata: 4 name: istio-security-post-install-default 5 labels: 6 app: istio-security 7 chart: security-1.0.3 8 heritage: Tiller 9 release: istio 10 rules: 11 - apiGroups: ["authentication.istio.io"] # needed to create default authn policy 12 resources: ["*"] 13 verbs: ["*"] 14 - apiGroups: ["networking.istio.io"] # needed to create security destination rules 15 resources: ["*"] 16 verbs: ["*"] 17 - apiGroups: ["admissionregistration.k8s.io"] 18 resources: ["validatingwebhookconfigurations"] 19 verbs: ["get"] 20 - apiGroups: ["extensions"] 21 resources: ["deployments", "replicasets"] 22 verbs: ["get", "list", "watch"]