Skip to content

Commit dbac2ff

Browse files
authored
Add workload_identity_x509_issuer_override to preset role (#54873)
1 parent cb8471e commit dbac2ff

File tree

2 files changed

+26
-0
lines changed

2 files changed

+26
-0
lines changed

gen/preset-roles.json

Lines changed: 24 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -1078,6 +1078,30 @@
10781078
"update",
10791079
"delete"
10801080
]
1081+
},
1082+
{
1083+
"resources": [
1084+
"workload_identity_x509_issuer_override"
1085+
],
1086+
"verbs": [
1087+
"list",
1088+
"create",
1089+
"read",
1090+
"update",
1091+
"delete"
1092+
]
1093+
},
1094+
{
1095+
"resources": [
1096+
"workload_identity_x509_issuer_override_csr"
1097+
],
1098+
"verbs": [
1099+
"list",
1100+
"create",
1101+
"read",
1102+
"update",
1103+
"delete"
1104+
]
10811105
}
10821106
]
10831107
},

lib/services/presets.go

Lines changed: 2 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -216,6 +216,8 @@ func NewPresetEditorRole() types.Role {
216216
types.NewRule(types.KindWorkloadIdentityX509Revocation, RW()),
217217
types.NewRule(types.KindHealthCheckConfig, RW()),
218218
types.NewRule(types.KindSigstorePolicy, RW()),
219+
types.NewRule(types.KindWorkloadIdentityX509IssuerOverride, RW()),
220+
types.NewRule(types.KindWorkloadIdentityX509IssuerOverrideCSR, RW()),
219221
},
220222
},
221223
},

0 commit comments

Comments
 (0)