apiVersion: rbac.authorization.k8s.io/v1 kind: ClusterRole metadata: labels: app.kubernetes.io/instance: local-path-provisioner app.kubernetes.io/name: local-path-provisioner name: local-path-provisioner rules: - apiGroups: - policy resourceNames: - local-path-policy resources: - podsecuritypolicies verbs: - use - apiGroups: - "" resources: - nodes - persistentvolumeclaims - configmaps verbs: - get - list - watch - apiGroups: - "" resources: - endpoints - persistentvolumes - pods verbs: - '*' - apiGroups: - "" resources: - events verbs: - create - patch - apiGroups: - storage.k8s.io resources: - storageclasses verbs: - get - list - watch