From dba184a5453a75a2dd52d97803deb0daadd015cc Mon Sep 17 00:00:00 2001 From: Tamal Saha Date: Mon, 16 Mar 2026 20:27:10 +0600 Subject: [PATCH] Grant permissions to kube-ui-server sa in OpenShift Signed-off-by: Tamal Saha --- .../templates/cluster-role-binding.yaml | 19 +++++++++++++++++++ 1 file changed, 19 insertions(+) diff --git a/charts/kube-ui-server/templates/cluster-role-binding.yaml b/charts/kube-ui-server/templates/cluster-role-binding.yaml index 7b66e0ad..52e6db48 100644 --- a/charts/kube-ui-server/templates/cluster-role-binding.yaml +++ b/charts/kube-ui-server/templates/cluster-role-binding.yaml @@ -12,3 +12,22 @@ subjects: - kind: ServiceAccount name: {{ include "kube-ui-server.serviceAccountName" . }} namespace: {{ .Release.Namespace }} + +{{- if eq "true" ( include "distro.openshift" . ) }} +--- +apiVersion: rbac.authorization.k8s.io/v1 +kind: RoleBinding +metadata: + name: {{ include "kube-ui-server.fullname" . }}-cluster-monitoring-viewer + namespace: openshift-monitoring + labels: + {{- include "kube-ui-server.labels" . | nindent 4 }} +roleRef: + apiGroup: rbac.authorization.k8s.io + kind: ClusterRole + name: cluster-monitoring-view +subjects: +- kind: ServiceAccount + name: {{ include "kube-ui-server.serviceAccountName" . }} + namespace: {{ .Release.Namespace }} +{{- end }}