traefik: isolate custom rbac from k3s cleanup
This commit is contained in:
parent
801dde8242
commit
816d0cca65
@ -2,7 +2,7 @@
|
||||
apiVersion: rbac.authorization.k8s.io/v1
|
||||
kind: ClusterRole
|
||||
metadata:
|
||||
name: traefik-ingress-controller
|
||||
name: atlas-traefik-ingress-controller
|
||||
rules:
|
||||
- apiGroups:
|
||||
- ""
|
||||
|
||||
@ -2,12 +2,12 @@
|
||||
apiVersion: rbac.authorization.k8s.io/v1
|
||||
kind: ClusterRoleBinding
|
||||
metadata:
|
||||
name: traefik-ingress-controller
|
||||
name: atlas-traefik-ingress-controller
|
||||
roleRef:
|
||||
apiGroup: rbac.authorization.k8s.io
|
||||
kind: ClusterRole
|
||||
name: traefik-ingress-controller
|
||||
name: atlas-traefik-ingress-controller
|
||||
subjects:
|
||||
- kind: ServiceAccount
|
||||
name: traefik-ingress-controller
|
||||
name: atlas-traefik-ingress-controller
|
||||
namespace: traefik
|
||||
|
||||
@ -72,8 +72,8 @@ items:
|
||||
node-role.kubernetes.io/worker: "true"
|
||||
restartPolicy: Always
|
||||
schedulerName: default-scheduler
|
||||
serviceAccount: traefik-ingress-controller
|
||||
serviceAccountName: traefik-ingress-controller
|
||||
serviceAccount: atlas-traefik-ingress-controller
|
||||
serviceAccountName: atlas-traefik-ingress-controller
|
||||
terminationGracePeriodSeconds: 30
|
||||
kind: List
|
||||
metadata: {}
|
||||
|
||||
@ -2,5 +2,5 @@
|
||||
apiVersion: v1
|
||||
kind: ServiceAccount
|
||||
metadata:
|
||||
name: traefik-ingress-controller
|
||||
name: atlas-traefik-ingress-controller
|
||||
namespace: traefik
|
||||
|
||||
@ -41,7 +41,6 @@ spec:
|
||||
ingress:
|
||||
className: traefik
|
||||
annotations:
|
||||
cert-manager.io/cluster-issuer: letsencrypt
|
||||
traefik.ingress.kubernetes.io/router.entrypoints: websecure
|
||||
traefik.ingress.kubernetes.io/router.tls: "true"
|
||||
hosts:
|
||||
|
||||
Loading…
x
Reference in New Issue
Block a user