apiVersion: resources.cattle.io/v1 kind: ResourceSet metadata: name: rancher-resource-set resourceSelectors: - apiVersion: "v1" kindsRegexp: "^namespaces$" resourceNameRegexp: "^cattle-|^p-|^c-|^user-|^u-|^fleet-|^cluster-fleet-" resourceNames: - "local" - "rancher-operator-system" - apiVersion: "v1" kindsRegexp: "^secrets$" namespaceRegexp: "^cattle-|^p-|^c-|^local$|^user-|^u-" labelSelectors: matchExpressions: - key: "owner" operator: "NotIn" values: ["helm"] - apiVersion: "v1" kindsRegexp: "^secrets$" labelSelectors: matchExpressions: - key: "owner" operator: "NotIn" values: ["helm"] - key: "fleet.cattle.io/managed" operator: "In" values: ["true"] - apiVersion: "v1" kindsRegexp: "^serviceaccounts$" namespaceRegexp: "^cattle-|^p-|^c-|^local$|^user-|^u-|^fleet-" namespaces: - "rancher-operator-system" - apiVersion: "v1" kindsRegexp: "^configmaps$" namespaces: - "cattle-system" - "fleet-system" - apiVersion: "rbac.authorization.k8s.io/v1" kindsRegexp: "^roles$|^rolebindings$" namespaceRegexp: "^cattle-|^p-|^c-|^local$|^user-|^u-" - apiVersion: "rbac.authorization.k8s.io/v1" kindsRegexp: "^roles$|^rolebindings$" resourceNames: - "fleet-controller" namespaceRegexp: "^fleet-" - apiVersion: "rbac.authorization.k8s.io/v1" kindsRegexp: "^clusterrolebindings$" resourceNameRegexp: "^cattle-|^clusterrolebinding-|^globaladmin-user-|^grb-u-|^fleet-" resourceNames: - "eks-operator" - "rancher-operator" - "gitjob-binding" - "rancher-webhook" - apiVersion: "rbac.authorization.k8s.io/v1" kindsRegexp: "^clusterroles$" resourceNameRegexp: "^cattle-|^p-|^c-|^local-|^user-|^u-|^project-|^create-ns$|^fleet-" resourceNames: - "eks-operator" - "rancher-operator" - "gitjob" - apiVersion: "apiextensions.k8s.io/v1beta1" kindsRegexp: "." resourceNameRegexp: "management.cattle.io$|project.cattle.io$|catalog.cattle.io$|eks.cattle.io$|resources.cattle.io$|rancher.cattle.io$|fleet.cattle.io$|gitjob.cattle.io$" - apiVersion: "management.cattle.io/v3" kindsRegexp: "." - apiVersion: "project.cattle.io/v3" kindsRegexp: "." - apiVersion: "catalog.cattle.io/v1" kindsRegexp: "^clusterrepos$" - apiVersion: "resources.cattle.io/v1" kindsRegexp: "^ResourceSet$" - apiVersion: "eks.cattle.io/v1" kindsRegexp: "." - apiVersion: "apps/v1" kindsRegexp: "^deployments$" resourceNames: - "eks-config-operator" namespaces: - "cattle-system" - apiVersion: "rancher.cattle.io/v1" kindsRegexp: "." - apiVersion: "apps/v1" kindsRegexp: "^deployments$" resourceNames: - "rancher-operator" namespaces: - "rancher-operator-system" - apiVersion: "fleet.cattle.io/v1alpha1" kindsRegexp: "." - apiVersion: "gitjob.cattle.io/v1" kindsRegexp: "." - apiVersion: "apps/v1" kindsRegexp: "^deployments$" resourceNames: - "fleet-controller" - "gitjob" namespaces: - "fleet-system" - apiVersion: "apps/v1" kindsRegexp: "^services$" resourceNames: - "gitjob" namespaces: - "fleet-system" - apiVersion: "admissionregistration.k8s.io/v1" kinds: - "ValidatingWebhookConfiguration" resourceNames: - "rancher.cattle.io" - apiVersion: "apps/v1" kindsRegexp: "^services$" resourceNames: - "rancher-webhook" namespaces: - "cattle-system" - apiVersion: "apps/v1" kindsRegexp: "^deployments$" resourceNames: - "rancher-webhook" namespaces: - "cattle-system" controllerReferences: - apiVersion: "apps/v1" resource: "deployments" name: "rancher" namespace: "cattle-system"