-
Task
-
Resolution: Unresolved
-
Normal
-
None
-
None
-
None
-
False
-
-
False
-
-
Context
In https://issues.redhat.com/browse/LOG-6894 we realized that when the identity that we are trying to grant privileges to is a ServiceAccount that we need to preform some extra steps.
If we are trying to grant the service account clusterwide access we should as well add it's group to adminGroups in LokiStack
If we are trying to grant the service account just permissions to look a the application logs of a single namespace we should grant that service account the ability to list the projects in question
- relates to
-
LOG-6894 serviceAccount with cluster-wide access to see application logs failing with not permission
-
- Closed
-