21 lines
598 B
YAML
21 lines
598 B
YAML
apiVersion: v1
|
|
kind: ConfigMap
|
|
metadata:
|
|
name: argocd-rbac-cm
|
|
namespace: argocd
|
|
labels:
|
|
app.kubernetes.io/name: argocd-rbac-cm
|
|
app.kubernetes.io/part-of: argocd
|
|
data:
|
|
# Unangemeldete / unbekannte User haben keinen Zugriff
|
|
policy.default: role:''
|
|
policy.csv: |
|
|
# readonly: darf alles sehen, nichts ändern
|
|
p, role:readonly, applications, get, */*, allow
|
|
p, role:readonly, projects, get, *, allow
|
|
p, role:readonly, repositories, get, *, allow
|
|
p, role:readonly, clusters, get, *, allow
|
|
p, role:readonly, logs, get, */*, allow
|
|
|
|
g, ntiebor, role:readonly
|