feat(argo-workflows): Add option for controller to read all secrets (#1967)

This commit is contained in:
Tim Collins 2023-04-14 14:53:40 +01:00 committed by GitHub
parent dfe36fbde9
commit 22356c77af
No known key found for this signature in database
GPG key ID: 4AEE18F83AFDEB23
4 changed files with 16 additions and 3 deletions

View file

@ -187,6 +187,16 @@ rules:
- watch
resourceNames: {{- toYaml . | nindent 4 }}
{{- end }}
{{- if and (not .Values.controller.rbac.secretWhitelist) (.Values.controller.rbac.accessAllSecrets) }}
- apiGroups:
- ""
resources:
- secrets
verbs:
- get
- list
- watch
{{- end }}
{{- if .Values.controller.clusterWorkflowTemplates.enabled }}
---