Bläddra i källkod

Merge pull request #3650 from mtnbikenc/fix-router

Merged by openshift-bot
OpenShift Bot 8 år sedan
förälder
incheckning
15130f01c9
1 ändrade filer med 9 tillägg och 0 borttagningar
  1. 9 0
      roles/openshift_hosted/tasks/router/router.yml

+ 9 - 0
roles/openshift_hosted/tasks/router/router.yml

@@ -37,6 +37,15 @@
     resource_name: hostnetwork
     resource_name: hostnetwork
   with_items: "{{ openshift_hosted_routers }}"
   with_items: "{{ openshift_hosted_routers }}"
 
 
+- name: Set additional permissions for router service account
+  oc_adm_policy_user:
+    user: "system:serviceaccount:{{ item.namespace }}:{{ item.serviceaccount }}"
+    namespace: "{{ item.namespace }}"
+    resource_kind: cluster-role
+    resource_name: cluster-reader
+  when: item.namespace == 'default'
+  with_items: "{{ openshift_hosted_routers }}"
+
 - name: Create OpenShift router
 - name: Create OpenShift router
   oc_adm_router:
   oc_adm_router:
     name: "{{ item.name }}"
     name: "{{ item.name }}"