--- apiVersion: rbac.authorization.k8s.io/v1 kind: ClusterRole metadata: name: manager-role rules: - apiGroups: - "" resources: - configmaps - events - secrets verbs: - create - delete - get - list - patch - update - watch - apiGroups: - bootstrap.cluster.x-k8s.io resources: - etcdadmconfigs - etcdadmconfigs/status verbs: - create - delete - get - list - patch - update - watch - apiGroups: - cluster.x-k8s.io resources: - clusters - clusters/status verbs: - get - list - watch - apiGroups: - cluster.x-k8s.io resources: - machines - machines/status verbs: - create - delete - get - list - patch - update - watch - apiGroups: - etcdcluster.cluster.x-k8s.io resources: - etcdadmclusters verbs: - create - delete - get - list - patch - update - watch - apiGroups: - etcdcluster.cluster.x-k8s.io resources: - etcdadmclusters/status verbs: - get - patch - update - apiGroups: - infrastructure.cluster.x-k8s.io resources: - '*' verbs: - create - delete - get - list - patch - update - watch