k8s.io/kubernetes@v1.29.3/test/e2e/testing-manifests/storage-csi/mock/csi-mock-rbac.yaml (about)

     1  apiVersion: v1
     2  kind: ServiceAccount
     3  metadata:
     4    name: csi-mock
     5  
     6  ---
     7  kind: ClusterRoleBinding
     8  apiVersion: rbac.authorization.k8s.io/v1
     9  metadata:
    10    name: csi-controller-attacher-role
    11  subjects:
    12    - kind: ServiceAccount
    13      name: csi-mock
    14      namespace: default
    15  roleRef:
    16    kind: ClusterRole
    17    name: external-attacher-runner
    18    apiGroup: rbac.authorization.k8s.io
    19  
    20  ---
    21  kind: ClusterRoleBinding
    22  apiVersion: rbac.authorization.k8s.io/v1
    23  metadata:
    24    name: csi-controller-provisioner-role
    25  subjects:
    26    - kind: ServiceAccount
    27      name: csi-mock
    28      namespace: default
    29  roleRef:
    30    kind: ClusterRole
    31    name: external-provisioner-runner
    32    apiGroup: rbac.authorization.k8s.io
    33  
    34  ---
    35  kind: ClusterRoleBinding
    36  apiVersion: rbac.authorization.k8s.io/v1
    37  metadata:
    38    name: csi-controller-cluster-driver-registrar-role
    39  subjects:
    40    - kind: ServiceAccount
    41      name: csi-mock
    42      namespace: default
    43  roleRef:
    44    kind: ClusterRole
    45    name: cluster-driver-registrar-runner
    46    apiGroup: rbac.authorization.k8s.io
    47  
    48  ---
    49  # privileged Pod Security Policy, previously defined via PrivilegedTestPSPClusterRoleBinding()
    50  kind: ClusterRoleBinding
    51  apiVersion: rbac.authorization.k8s.io/v1
    52  metadata:
    53    name: psp-csi-controller-driver-registrar-role
    54  subjects:
    55    - kind: ServiceAccount
    56      name: csi-mock
    57      namespace: default
    58  roleRef:
    59    kind: ClusterRole
    60    name: e2e-test-privileged-psp
    61    apiGroup: rbac.authorization.k8s.io
    62  ---
    63  kind: ClusterRoleBinding
    64  apiVersion: rbac.authorization.k8s.io/v1
    65  metadata:
    66    name: csi-controller-resizer-role
    67  subjects:
    68    - kind: ServiceAccount
    69      name: csi-mock
    70      namespace: default
    71  roleRef:
    72    kind: ClusterRole
    73    name: external-resizer-runner
    74    apiGroup: rbac.authorization.k8s.io
    75  ---
    76  kind: ClusterRoleBinding
    77  apiVersion: rbac.authorization.k8s.io/v1
    78  metadata:
    79    name: csi-controller-snapshotter-role
    80  subjects:
    81    - kind: ServiceAccount
    82      name: csi-mock
    83      namespace: default
    84  roleRef:
    85    kind: ClusterRole
    86    name: external-snapshotter-runner
    87    apiGroup: rbac.authorization.k8s.io