--- kind: ClusterRole apiVersion: rbac.authorization.k8s.io/v1 metadata: name: rook-ceph-object-bucket labels: operator: rook storage-backend: ceph app.kubernetes.io/name: rook-ceph app.kubernetes.io/instance: rook-ceph app.kubernetes.io/version: v1.18.8 app.kubernetes.io/part-of: rook-ceph-operator app.kubernetes.io/managed-by: Helm app.kubernetes.io/created-by: helm helm.sh/chart: "rook-ceph-v1.18.8" rules: - apiGroups: [""] resources: ["secrets", "configmaps"] verbs: - get - create - update - delete - apiGroups: ["storage.k8s.io"] resources: ["storageclasses"] verbs: - get - apiGroups: ["objectbucket.io"] resources: ["objectbucketclaims"] verbs: - list - watch - get - update - apiGroups: ["objectbucket.io"] resources: ["objectbuckets"] verbs: - list - watch - get - create - update - delete - apiGroups: ["objectbucket.io"] resources: ["objectbucketclaims/status", "objectbuckets/status"] verbs: - update - apiGroups: ["objectbucket.io"] resources: ["objectbucketclaims/finalizers", "objectbuckets/finalizers"] verbs: - update