aboutsummaryrefslogtreecommitdiffstats
path: root/kubernetes/common/mongodb/templates/role.yaml
diff options
context:
space:
mode:
authorLukasz Rajewski <lukasz.rajewski@t-mobile.pl>2024-03-11 15:39:30 +0000
committerGerrit Code Review <gerrit@onap.org>2024-03-11 15:39:30 +0000
commitfa01ec554cfa10cb1f9ec8be0c5530dd3f3ea50a (patch)
tree0f21b55af795554e19a745a4dcb0b063eb7ff18a /kubernetes/common/mongodb/templates/role.yaml
parent9964927d8766c5c396ef2caf6f7aeb7494db279e (diff)
parentcde4a784a593555c17146635dcc25013872cabc5 (diff)
Merge "[MONGODB] Update to latest bitnami mongodb chart"
Diffstat (limited to 'kubernetes/common/mongodb/templates/role.yaml')
-rw-r--r--kubernetes/common/mongodb/templates/role.yaml31
1 files changed, 31 insertions, 0 deletions
diff --git a/kubernetes/common/mongodb/templates/role.yaml b/kubernetes/common/mongodb/templates/role.yaml
new file mode 100644
index 0000000000..b37d192cb0
--- /dev/null
+++ b/kubernetes/common/mongodb/templates/role.yaml
@@ -0,0 +1,31 @@
+{{- /*
+Copyright VMware, Inc.
+SPDX-License-Identifier: APACHE-2.0
+*/}}
+
+{{- if .Values.rbac.create }}
+apiVersion: {{ include "common.capabilities.rbac.apiVersion" . }}
+kind: Role
+metadata:
+ name: {{ include "mongodb.fullname" . }}
+ namespace: {{ include "mongodb.namespace" . | quote }}
+ labels: {{- include "common.labels.standard" ( dict "customLabels" .Values.commonLabels "context" $ ) | nindent 4 }}
+rules:
+ - apiGroups:
+ - ""
+ resources:
+ - services
+ verbs:
+ - get
+ - list
+ - watch
+{{- if .Values.rbac.rules }}
+{{- include "common.tplvalues.render" ( dict "value" .Values.rbac.rules "context" $ ) | nindent 2 }}
+{{- end -}}
+{{- if and (include "common.capabilities.psp.supported" .) .Values.podSecurityPolicy.create }}
+ - apiGroups: ['{{ template "podSecurityPolicy.apiGroup" . }}']
+ resources: ['podsecuritypolicies']
+ verbs: ['use']
+ resourceNames: [{{ include "mongodb.fullname" . }}]
+{{- end -}}
+{{- end }}