{{- if eq .Values.encryption.enabled true }} apiVersion: rbac.authorization.k8s.io/v1 kind: ClusterRole metadata: creationTimestamp: null name: {{ .Release.Name }}-manager-role rules: - apiGroups: - "" resources: - namespaces verbs: - get - list - apiGroups: - "" resources: - secrets verbs: - get - list - watch --- apiVersion: rbac.authorization.k8s.io/v1 kind: ClusterRoleBinding metadata: name: {{ .Release.Name }}-manager-rolebinding namespace: kube-system roleRef: apiGroup: rbac.authorization.k8s.io kind: ClusterRole name: {{ .Release.Name }}-manager-role subjects: - kind: ServiceAccount # "system:serviceaccount:isilon:isilon-node" name: {{ .Release.Name }}-node namespace: {{ .Release.Namespace }} - kind: ServiceAccount # "system:serviceaccount:isilon:isilon-controller" name: {{ .Release.Name }}-controller namespace: {{ .Release.Namespace }} {{ end }}