open-cluster-management.io/governance-policy-propagator@v0.13.0/test/resources/case18_compliance_api_test/subset_service_account.yaml (about)

     1  apiVersion: v1
     2  kind: ServiceAccount
     3  metadata:
     4    name: subset-sa
     5    namespace: default
     6  ---
     7  apiVersion: v1
     8  kind: Secret
     9  type: kubernetes.io/service-account-token
    10  metadata:
    11    name: subset-sa
    12    annotations:
    13      kubernetes.io/service-account.name: subset-sa
    14  ---
    15  apiVersion: rbac.authorization.k8s.io/v1
    16  kind: ClusterRole
    17  metadata:
    18    creationTimestamp: null
    19    name: subset-cluster-role
    20  rules:
    21  - apiGroups:
    22    - '*'
    23    resources:
    24    - '*'
    25    verbs:
    26    - watch
    27  - apiGroups:
    28    - 'cluster.open-cluster-management.io'
    29    resources:
    30    - managedclusters
    31    resourceNames:
    32    - managed1
    33    verbs:
    34    - get
    35  ---
    36  apiVersion: rbac.authorization.k8s.io/v1
    37  kind: ClusterRoleBinding
    38  metadata:
    39    name: subset-cluster-role-binding
    40  roleRef:
    41    apiGroup: rbac.authorization.k8s.io
    42    kind: ClusterRole
    43    name: subset-cluster-role
    44  subjects:
    45  - kind: ServiceAccount
    46    name: subset-sa
    47    namespace: default