restrict phoenix RBAC to minimum permissions

This commit is contained in:
mrxhunt 2026-03-12 07:11:26 +00:00
parent b6a37437c4
commit 29fc00c58f

View File

@ -10,12 +10,14 @@ metadata:
name: phoenix-role name: phoenix-role
namespace: web namespace: web
rules: rules:
- apiGroups: [""] - apiGroups:
resources: ["*"] - "apps"
verbs: ["get", "watch", "list"] resources:
- apiGroups: ["apps"] - deployments
resources: ["*"] resourceNames:
verbs: ["get", "watch", "list"] - phoenix-app
verbs:
- get
--- ---
apiVersion: rbac.authorization.k8s.io/v1 apiVersion: rbac.authorization.k8s.io/v1
kind: RoleBinding kind: RoleBinding