kind: ClusterRole apiVersion: rbac.authorization.k8s.io/v1 metadata: name: gs-admin namespace: default rules: - apiGroups: - "" resources: - "*" verbs: - "*" - apiGroups: - rbac.authorization.k8s.io - extensions - apps resources: - "*" verbs: - "*" - apiGroups: - apiextensions.k8s.io - agones.dev resources: - customresourcedefinitions - pods - deployments - gameservers - fleets - fleets/scale verbs: - get - list - watch - create - delete - update - patch --- apiVersion: v1 kind: ServiceAccount metadata: name: gs-admin namespace: default --- kind: ClusterRoleBinding apiVersion: rbac.authorization.k8s.io/v1 metadata: name: gs-admin namespace: default subjects: - kind: ServiceAccount name: gs-admin namespace: default roleRef: kind: ClusterRole name: gs-admin apiGroup: rbac.authorization.k8s.io