diff --git a/config/core/roles/clusterrole-namespaced.yaml b/config/core/roles/clusterrole-namespaced.yaml index 91f3fdfe816..d1f6bae5121 100644 --- a/config/core/roles/clusterrole-namespaced.yaml +++ b/config/core/roles/clusterrole-namespaced.yaml @@ -79,6 +79,19 @@ rules: --- kind: ClusterRole apiVersion: rbac.authorization.k8s.io/v1 +metadata: + name: knative-sinks-namespaced-admin + labels: + rbac.authorization.k8s.io/aggregate-to-admin: "true" + app.kubernetes.io/version: devel + app.kubernetes.io/name: knative-eventing +rules: + - apiGroups: ["sinks.knative.dev"] + resources: ["*"] + verbs: ["*"] +--- +kind: ClusterRole +apiVersion: rbac.authorization.k8s.io/v1 metadata: name: knative-eventing-namespaced-edit labels: @@ -86,7 +99,7 @@ metadata: app.kubernetes.io/version: devel app.kubernetes.io/name: knative-eventing rules: - - apiGroups: ["eventing.knative.dev", "messaging.knative.dev", "sources.knative.dev", "flows.knative.dev", "bindings.knative.dev"] + - apiGroups: ["eventing.knative.dev", "messaging.knative.dev", "sources.knative.dev", "flows.knative.dev", "bindings.knative.dev", "sinks.knative.dev"] resources: ["*"] verbs: ["create", "update", "patch", "delete"] --- @@ -99,6 +112,6 @@ metadata: app.kubernetes.io/version: devel app.kubernetes.io/name: knative-eventing rules: - - apiGroups: ["eventing.knative.dev", "messaging.knative.dev", "sources.knative.dev", "flows.knative.dev", "bindings.knative.dev"] + - apiGroups: ["eventing.knative.dev", "messaging.knative.dev", "sources.knative.dev", "flows.knative.dev", "bindings.knative.dev", "sinks.knative.dev"] resources: ["*"] verbs: ["get", "list", "watch"]