Allow access role to access pods (#20402)

This PR adds full access to `pod` resources on every namespace for
default role `access`.

Fixes #20401
This commit is contained in:
Tiago Silva 2023-01-19 22:30:51 +00:00 committed by GitHub
parent 1e49e7537b
commit f1e897a86b
No known key found for this signature in database
GPG key ID: 4AEE18F83AFDEB23

View file

@ -113,6 +113,13 @@ func NewPresetAccessRole() types.Role {
DatabaseLabels: types.Labels{types.Wildcard: []string{types.Wildcard}},
DatabaseNames: []string{teleport.TraitInternalDBNamesVariable},
DatabaseUsers: []string{teleport.TraitInternalDBUsersVariable},
KubernetesResources: []types.KubernetesResource{
{
Kind: types.KindKubePod,
Namespace: types.Wildcard,
Name: types.Wildcard,
},
},
Rules: []types.Rule{
types.NewRule(types.KindEvent, RO()),
{