From 52e9d78de6dba5f4fb5270e56f0a46f11af02023 Mon Sep 17 00:00:00 2001 From: LordMathis Date: Wed, 14 May 2025 21:47:53 +0200 Subject: [PATCH] Add dashboard service account --- apps/prod/dashboard/ingress.yaml | 2 -- apps/prod/dashboard/kustomization.yaml | 1 + apps/prod/dashboard/service-account.yaml | 18 ++++++++++++++++++ 3 files changed, 19 insertions(+), 2 deletions(-) create mode 100644 apps/prod/dashboard/service-account.yaml diff --git a/apps/prod/dashboard/ingress.yaml b/apps/prod/dashboard/ingress.yaml index 15fc64f..d8bfdff 100644 --- a/apps/prod/dashboard/ingress.yaml +++ b/apps/prod/dashboard/ingress.yaml @@ -10,8 +10,6 @@ spec: routes: - match: Host(`${K8S_DASHBOARD_DOMAIN}`) kind: Rule - middlewares: - - name: "auth-authelia@kubernetescrd" services: - name: dashboard-kong-proxy port: 443 diff --git a/apps/prod/dashboard/kustomization.yaml b/apps/prod/dashboard/kustomization.yaml index 71e7dbb..95bc267 100644 --- a/apps/prod/dashboard/kustomization.yaml +++ b/apps/prod/dashboard/kustomization.yaml @@ -7,6 +7,7 @@ resources: - ../../base/dashboard - release.yaml - ingress.yaml + - service-account.yaml configurations: - kustomizeconfig.yaml diff --git a/apps/prod/dashboard/service-account.yaml b/apps/prod/dashboard/service-account.yaml new file mode 100644 index 0000000..84855f9 --- /dev/null +++ b/apps/prod/dashboard/service-account.yaml @@ -0,0 +1,18 @@ +apiVersion: v1 +kind: ServiceAccount +metadata: + name: admin-user + namespace: dashboard +--- +apiVersion: rbac.authorization.k8s.io/v1 +kind: ClusterRoleBinding +metadata: + name: admin-user +roleRef: + apiGroup: rbac.authorization.k8s.io + kind: ClusterRole + name: cluster-admin +subjects: +- kind: ServiceAccount + name: admin-user + namespace: dashboard \ No newline at end of file