fix ingress rbac roles

There was 2 things that the current IC (0.9 beta7) needs.

The ClusterRole was missing `get nodes`:

```
RBAC DENY: user "system:serviceaccount:kube-system:nginx-ingress-controller" groups [system:serviceaccounts system:serviceaccounts:kube-system system:authenticated] cannot "get" resource "nodes" named "xxx" cluster-wide
```

The Role was missing `update configmaps`:

```RBAC DENY: user "system:serviceaccount:kube-system:nginx-ingress-controller" groups [system:serviceaccounts system:serviceaccounts:kube-system system:authenticated] cannot "update" resource "configmaps" named "ingress-controller-leader-nginx" in namespace "kube-system"```
This commit is contained in:
Puja 2017-06-01 17:00:40 +02:00 committed by GitHub
parent a6bba68233
commit c96758a7d5

View file

@ -23,6 +23,7 @@ rules:
- pods - pods
- secrets - secrets
verbs: verbs:
- get
- list - list
- watch - watch
- apiGroups: - apiGroups:
@ -69,6 +70,7 @@ rules:
- secrets - secrets
verbs: verbs:
- get - get
- update
- apiGroups: - apiGroups:
- "" - ""
resources: resources: