@@ -74,10 +74,24 @@ roleRef:
7474
7575{{- if .Values.wizManager.enabled -}}
7676---
77+ {{- if .Values.wizManager.serviceAccount.create -}}
78+ apiVersion : v1
79+ kind : ServiceAccount
80+ metadata :
81+ name : {{ include "wiz-admission-controller.manager.serviceAccountName" . }}
82+ namespace : {{ .Release.Namespace | quote }}
83+ labels :
84+ {{- include "wiz-admission-controller.labels" . | nindent 4 }}
85+ {{- with .Values.wizManager.serviceAccount.annotations }}
86+ annotations :
87+ {{- toYaml . | nindent 4 }}
88+ {{- end }}
89+ {{- end }}
90+ ---
7791apiVersion : rbac.authorization.k8s.io/v1
7892kind : Role
7993metadata :
80- name : {{ printf "%s-pods-and-deployments-manager" (include "wiz-admission-controller.serviceAccountName" .) }}
94+ name : {{ printf "%s-pods-and-deployments-manager" (include "wiz-admission-controller.manager. serviceAccountName" .) }}
8195 namespace : {{ .Release.Namespace | quote }}
8296 labels :
8397 {{- include "wiz-admission-controller.labels" . | nindent 4 }}
@@ -93,16 +107,16 @@ rules:
93107apiVersion : rbac.authorization.k8s.io/v1
94108kind : RoleBinding
95109metadata :
96- name : {{ printf "%s-pods-and-deployments" (include "wiz-admission-controller.serviceAccountName" .) }}
110+ name : {{ printf "%s-pods-and-deployments" (include "wiz-admission-controller.manager. serviceAccountName" .) }}
97111 namespace : {{ .Release.Namespace | quote }}
98112 labels :
99113 {{- include "wiz-admission-controller.labels" . | nindent 4 }}
100114subjects :
101115 - kind : ServiceAccount
102- name : {{ include "wiz-admission-controller.serviceAccountName" . }}
116+ name : {{ include "wiz-admission-controller.manager. serviceAccountName" . }}
103117 namespace : {{ .Release.Namespace | quote }}
104118roleRef :
105119 kind : Role
106- name : {{ printf "%s-pods-and-deployments-reader- manager" (include "wiz-admission-controller.serviceAccountName" .) }}
120+ name : {{ printf "%s-pods-and-deployments-manager" (include "wiz-admission-controller.manager .serviceAccountName" .) }}
107121 apiGroup : rbac.authorization.k8s.io
108122{{- end }}
0 commit comments