华为云UCS-k8sblockendpointeditdefaultrole:符合策略实例的资源定义

时间:2024-01-05 16:50:38

符合策略实例的资源定义

示例中ClusterRole的生效对象中没有endpoints,符合策略实例。

apiVersion: rbac.authorization.k8s.io/v1
kind: ClusterRole
metadata:
  annotations:
    rbac.authorization.kubernetes.io/autoupdate: "true"
  creationTimestamp: null
  labels:
    kubernetes.io/bootstrapping: rbac-defaults
    rbac.authorization.k8s.io/aggregate-to-edit: "true"
  name: system:aggregate-to-edit
rules:
- apiGroups:
  - ""
  resources:
  - pods/attach
  - pods/exec
  - secrets
  - services/proxy
  verbs:
  - get
  - list
  - watch
support.huaweicloud.com/usermanual-ucs/ucs_01_0247.html