github.com/replicatedcom/ship@v0.50.0/integration/init/istio/expected/base/charts/security/templates/ClusterRole-istio-security-post-install-default.yaml (about)

     1  apiVersion: rbac.authorization.k8s.io/v1beta1
     2  kind: ClusterRole
     3  metadata:
     4    name: istio-security-post-install-default
     5    labels:
     6      app: security
     7      chart: security
     8      heritage: Tiller
     9      release: istio
    10  rules:
    11  - apiGroups: ["authentication.istio.io"] # needed to create default authn policy
    12    resources: ["*"]
    13    verbs: ["*"]
    14  - apiGroups: ["networking.istio.io"] # needed to create security destination rules
    15    resources: ["*"]
    16    verbs: ["*"]
    17  - apiGroups: ["admissionregistration.k8s.io"]
    18    resources: ["validatingwebhookconfigurations"]
    19    verbs: ["get"]
    20  - apiGroups: ["extensions"]
    21    resources: ["deployments", "replicasets"]
    22    verbs: ["get", "list", "watch"]