35 lines
732 B
YAML
35 lines
732 B
YAML
---
|
|
apiVersion: codemowers.cloud/v1beta1
|
|
kind: OIDCClient
|
|
metadata:
|
|
name: kubelogin
|
|
spec:
|
|
displayName: Kubernetes API
|
|
uri: https://git.k-space.ee/k-space/kube#cluster-access
|
|
redirectUris:
|
|
- http://localhost:27890
|
|
allowedGroups:
|
|
- k-space:kubernetes:admins
|
|
grantTypes:
|
|
- authorization_code
|
|
- refresh_token
|
|
responseTypes:
|
|
- code
|
|
availableScopes:
|
|
- openid
|
|
- profile
|
|
tokenEndpointAuthMethod: none
|
|
---
|
|
apiVersion: rbac.authorization.k8s.io/v1
|
|
kind: ClusterRoleBinding
|
|
metadata:
|
|
name: kubernetes-admins
|
|
subjects:
|
|
- kind: Group
|
|
name: "k-space:kubernetes:admins"
|
|
apiGroup: rbac.authorization.k8s.io
|
|
roleRef:
|
|
kind: ClusterRole
|
|
name: cluster-admin
|
|
apiGroup: rbac.authorization.k8s.io
|