@@ -185,8 +185,7 @@ func GetOpenshiftBootstrapClusterRoles() []rbac.ClusterRole {
185
185
186
186
rbac .NewRule (read ... ).Groups (certificatesGroup ).Resources ("certificatesigningrequests" , "certificatesigningrequests/approval" , "certificatesigningrequests/status" ).RuleOrDie (),
187
187
188
- rbac .NewRule (read ... ).Groups (authzGroup , legacyAuthzGroup ).Resources ("clusterpolicies" , "clusterpolicybindings" , "clusterroles" , "clusterrolebindings" ,
189
- "policies" , "policybindings" , "roles" , "rolebindings" , "rolebindingrestrictions" ).RuleOrDie (),
188
+ rbac .NewRule (read ... ).Groups (authzGroup , legacyAuthzGroup ).Resources ("clusterroles" , "clusterrolebindings" , "roles" , "rolebindings" , "rolebindingrestrictions" ).RuleOrDie (),
190
189
191
190
rbac .NewRule (read ... ).Groups (buildGroup , legacyBuildGroup ).Resources ("builds" , "builds/details" , "buildconfigs" , "buildconfigs/webhooks" , "builds/log" ).RuleOrDie (),
192
191
@@ -316,7 +315,7 @@ func GetOpenshiftBootstrapClusterRoles() []rbac.ClusterRole {
316
315
rbac .NewRule ("create" ).Groups (securityGroup , legacySecurityGroup ).Resources ("podsecuritypolicysubjectreviews" , "podsecuritypolicyselfsubjectreviews" , "podsecuritypolicyreviews" ).RuleOrDie (),
317
316
rbac .NewRule ("create" ).Groups (kAuthzGroup ).Resources ("localsubjectaccessreviews" ).RuleOrDie (),
318
317
319
- rbac .NewRule (read ... ).Groups (authzGroup , legacyAuthzGroup ).Resources ("policies" , "policybindings" , " rolebindingrestrictions" ).RuleOrDie (),
318
+ rbac .NewRule (read ... ).Groups (authzGroup , legacyAuthzGroup ).Resources ("rolebindingrestrictions" ).RuleOrDie (),
320
319
321
320
rbac .NewRule (readWrite ... ).Groups (buildGroup , legacyBuildGroup ).Resources ("builds" , "buildconfigs" , "buildconfigs/webhooks" ).RuleOrDie (),
322
321
rbac .NewRule (read ... ).Groups (buildGroup , legacyBuildGroup ).Resources ("builds/log" ).RuleOrDie (),
@@ -801,7 +800,6 @@ func GetOpenshiftBootstrapClusterRoles() []rbac.ClusterRole {
801
800
rbac .NewRule (readWrite ... ).Groups (authzGroup , legacyAuthzGroup ).Resources ("rolebindings" , "roles" ).RuleOrDie (),
802
801
rbac .NewRule ("create" ).Groups (authzGroup , legacyAuthzGroup ).Resources ("localresourceaccessreviews" , "localsubjectaccessreviews" , "subjectrulesreviews" ).RuleOrDie (),
803
802
rbac .NewRule ("create" ).Groups (kAuthzGroup ).Resources ("localsubjectaccessreviews" ).RuleOrDie (),
804
- rbac .NewRule (read ... ).Groups (authzGroup , legacyAuthzGroup ).Resources ("policies" , "policybindings" ).RuleOrDie (),
805
803
806
804
rbac .NewRule ("get" ).Groups (kapiGroup ).Resources ("namespaces" ).RuleOrDie (),
807
805
rbac .NewRule ("get" , "delete" ).Groups (projectGroup , legacyProjectGroup ).Resources ("projects" ).RuleOrDie (),
0 commit comments