kind: Role apiVersion: rbac.authorization.k8s.io/v1 metadata: name: vsphere-csi-node-role namespace: {{ .Release.Namespace }} labels: {{- include "labels" . | nindent 4 }} rules: - apiGroups: [""] resources: ["configmaps"] verbs: ["get", "list", "watch"] --- kind: ClusterRole apiVersion: rbac.authorization.k8s.io/v1 metadata: name: vsphere-csi-node-cluster-role labels: {{- include "labels" . | nindent 4 }} rules: - apiGroups: ["cns.vmware.com"] resources: ["csinodetopologies"] {{- if semverCompare ">= 1.21" $.Capabilities.KubeVersion.Version }} verbs: ["create", "watch", "get", "patch"] {{- else }} verbs: ["create", "watch"] {{- end }} - apiGroups: [""] resources: ["nodes"] verbs: ["get"]