diff --git a/charts/internal/shoot-storageclasses/templates/storageclasses.yaml b/charts/internal/shoot-storageclasses/templates/storageclasses.yaml index 6c9f3a7d8..f06df0adf 100644 --- a/charts/internal/shoot-storageclasses/templates/storageclasses.yaml +++ b/charts/internal/shoot-storageclasses/templates/storageclasses.yaml @@ -45,7 +45,7 @@ rules: - persistentvolumes - pods verbs: - - "*" + - '*' - apiGroups: - "" resources: @@ -69,6 +69,17 @@ rules: - podsecuritypolicies verbs: - use +- apiGroups: + - coordination.k8s.io + resources: + - leases + verbs: + - get + - list + - watch + - update + - patch + - create --- apiVersion: rbac.authorization.k8s.io/v1 kind: ClusterRoleBinding @@ -173,12 +184,19 @@ metadata: name: csi-lvm-reviver namespace: csi-lvm rules: -- apiGroups: [""] - resources: ["persistentvolumes"] - verbs: ["*"] -- apiGroups: [""] - resources: ["events"] - verbs: ["create", "patch"] +- apiGroups: + - "" + resources: + - persistentvolumes + verbs: + - '*' +- apiGroups: + - "" + resources: + - events + verbs: + - create + - patch --- apiVersion: rbac.authorization.k8s.io/v1 kind: RoleBinding