Uploaded image for project: 'Red Hat Advanced Cluster Management'
  1. Red Hat Advanced Cluster Management
  2. ACM-6167

create policy template for propagating managed SA and cluster permissions to managed cluster namespaces

XMLWordPrintable

    • No

      Value Statement{}

      If Users want to create RBAC user cluster secrets to be used in the ArgoCD push model, they need to manually create managed service account and its cluster permission CR in each managed clusters 

       

      To simplify this task, we could use a policy template to create the managed service account and cluster permission for all the managed clusters

       

      As such we will add a new spec field in gitopscluster CRD for enabling the policy template creation.

       

      Definition of Done for Engineering Story Owner (Checklist)

      • ...

      Development Complete

      • The code is complete.
      • Functionality is working.
      • Any required downstream Docker file changes are made.

      Tests Automated

      • [ ] Unit/function tests have been automated and incorporated into the
        build.
      • [ ] 100% automated unit/function test coverage for new or changed APIs.

      Secure Design

      • [ ] Security has been assessed and incorporated into your threat model.

      Multidisciplinary Teams Readiness

      Support Readiness

      • [ ] The must-gather script has been updated.

              ming@redhat.com Mike Ng
              xiangli@redhat.com Xiangjing Li
              Yupeng Chang Yupeng Chang
              Votes:
              0 Vote for this issue
              Watchers:
              5 Start watching this issue

                Created:
                Updated:
                Resolved: