# Source: cert-manager/templates/cainjector-psp-clusterrole.yaml kind: ClusterRole apiVersion: rbac.authorization.k8s.io/v1 metadata: name: cert-manager-cainjector-psp labels: app: cainjector app.kubernetes.io/name: cainjector app.kubernetes.io/instance: cert-manager app.kubernetes.io/managed-by: Helm app.kubernetes.io/component: "cainjector" helm.sh/chart: cert-manager-v1.1.0 rules: - apiGroups: ['policy'] resources: ['podsecuritypolicies'] verbs: ['use'] resourceNames: - cert-manager-cainjector