--- apiVersion: rbac.authorization.k8s.io/v1 kind: ClusterRole metadata: name: manager-role rules: - apiGroups: - "" resources: - configmaps - endpoints - events - namespaces - persistentvolumeclaims - pods - secrets - services - services/finalizers verbs: - create - delete - get - list - patch - update - watch - apiGroups: - apps resources: - daemonsets - deployments - replicasets - statefulsets verbs: - create - delete - get - list - patch - update - watch - apiGroups: - apps resources: - deployments/finalizers verbs: - update - apiGroups: - apps resourceNames: - onepassword-connect-operator resources: - deployments/finalizers verbs: - update - apiGroups: - apps resources: - deployments/status verbs: - get - patch - update - apiGroups: - coordination.k8s.io resources: - leases verbs: - create - get - list - update - apiGroups: - monitoring.coreos.com resources: - servicemonitors verbs: - create - get - apiGroups: - onepassword.com resources: - '*' - onepassworditems verbs: - create - delete - get - list - patch - update - watch - apiGroups: - onepassword.com resources: - onepassworditems/finalizers verbs: - update - apiGroups: - onepassword.com resources: - onepassworditems/status verbs: - get - patch - update