--- apiVersion: codemowers.cloud/v1beta1 kind: OIDCClient metadata: name: kubelogin spec: displayName: Kubernetes API uri: https://git.k-space.ee/k-space/kube#cluster-access redirectUris: - http://localhost:27890 allowedGroups: - k-space:kubernetes:admins grantTypes: - authorization_code - refresh_token responseTypes: - code availableScopes: - openid - profile tokenEndpointAuthMethod: none --- apiVersion: rbac.authorization.k8s.io/v1 kind: ClusterRoleBinding metadata: name: kubernetes-admins subjects: - kind: Group name: "k-space:kubernetes:admins" apiGroup: rbac.authorization.k8s.io roleRef: kind: ClusterRole name: cluster-admin apiGroup: rbac.authorization.k8s.io