--- apiVersion: rbac.authorization.k8s.io/v1 kind: ClusterRole metadata: name: manager-role rules: - apiGroups: - "" resources: - configmaps - services verbs: - get - list - watch - apiGroups: - unifi.engen.priv.no resources: - firewallgroups - firewallpolicies - firewallzones - networkconfigurations - portforwards verbs: - create - delete - get - list - patch - update - watch - apiGroups: - unifi.engen.priv.no resources: - firewallgroups/finalizers - firewallpolicies/finalizers - firewallzones/finalizers - networkconfigurations/finalizers - portforwards/finalizers verbs: - update - apiGroups: - unifi.engen.priv.no resources: - firewallgroups/status - firewallpolicies/status - firewallzones/status - networkconfigurations/status - portforwards/status verbs: - get - patch - update