apiVersion: rbac.authorization.k8s.io/v1 kind: ClusterRoleBinding metadata: name: cluster-admin-oidc namespace: {{ .Release.Namespace }} labels: app.kubernetes.io/name: cluster-admin-oidc {{- include "custom.labels" . | nindent 4 }} roleRef: apiGroup: rbac.authorization.k8s.io kind: ClusterRole name: cluster-admin subjects: - apiGroup: rbac.authorization.k8s.io kind: User name: https://authentik.alexlebens.net/application/o/headlamp/#alexanderlebens@gmail.com - kind: ServiceAccount name: {{ include "custom.serviceAccountName" . }} namespace: {{ .Release.Namespace }}