--- apiVersion: rbac.authorization.k8s.io/v1 kind: ClusterRole metadata: name: manager-role rules: - apiGroups: - "" resources: - secrets verbs: - create - list - patch - watch - apiGroups: - coordination.k8s.io resources: - leases verbs: - create - delete - get - list - patch - update - watch - apiGroups: - zitadel.github.com resources: - apiapps - connections - machineusers - oidcapps - organizations - projects verbs: - create - delete - get - list - patch - update - watch - apiGroups: - zitadel.github.com resources: - apiapps/finalizers - connections/finalizers - machineusers/finalizers - oidcapps/finalizers - organizations/finalizers - projects/finalizers verbs: - update - apiGroups: - zitadel.github.com resources: - apiapps/status - connections/status - machineusers/status - oidcapps/status - organizations/status - projects/status verbs: - get - patch - update