Skip to content

[18-stable] Remove unnecessary pods RBAC permissions - #432

Merged
openshift-merge-bot[bot] merged 1 commit into
openstack-k8s-operators:18-stablefrom
openshift-cherrypick-robot:cherry-pick-423-to-18-stable
Jul 29, 2026
Merged

[18-stable] Remove unnecessary pods RBAC permissions#432
openshift-merge-bot[bot] merged 1 commit into
openstack-k8s-operators:18-stablefrom
openshift-cherrypick-robot:cherry-pick-423-to-18-stable

Conversation

@openshift-cherrypick-robot

Copy link
Copy Markdown

This is an automated cherry-pick of #423

/assign stuggi

The workload rbacRules and a kubebuilder RBAC marker granted full CRUD
(create/delete/get/list/patch/update/watch) on core Pods, which was never
exercised. Remove the unused permission and regenerate config/rbac/role.yaml.

The narrower get;list;update;watch;patch marker is kept, since the
controller lists and updates provision server Pods directly.

Signed-off-by: Martin Schuppert <mschuppert@redhat.com>

@stuggi stuggi left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

/lgtm

@openshift-ci openshift-ci Bot added the lgtm label Jul 29, 2026
@openshift-ci

openshift-ci Bot commented Jul 29, 2026

Copy link
Copy Markdown
Contributor

[APPROVALNOTIFIER] This PR is APPROVED

This pull-request has been approved by: openshift-cherrypick-robot, stuggi

The full list of commands accepted by this bot can be found here.

The pull request process is described here

Details Needs approval from an approver in each of these files:

Approvers can indicate their approval by writing /approve in a comment
Approvers can cancel approval by writing /approve cancel in a comment

@openshift-merge-bot
openshift-merge-bot Bot merged commit 8d5f244 into openstack-k8s-operators:18-stable Jul 29, 2026
5 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants