Permission issues when installing from the template
See original GitHub issueThis is a…
[ ] Feature request
[x] Regression (a behavior that used to work and stopped working in a new release)
[x] Bug report
[ ] Documentation issue or request
Description
When installing from template via install-syndesis --legacy --tag 1.7.8 --project syndesis-test
on our staging cluster there are permission issues:
- unable to create
syndesis-knative-reader
role and the role binding (as the role hasn’t been created):
error: roles.rbac.authorization.k8s.io "syndesis-knative-reader" is forbidden: attempt to grant extra privileges: [{[get] [serving.knative.dev] [services] [] []} {[list] [serving.knative.dev] [services] [] []} {[watch] [serving.knative.dev] [services] [] []} {[get] [eventing.knative.dev] [channels] [] []} {[list] [eventing.knative.dev] [channels] [] []} {[watch] [eventing.knative.dev] [channels] [] []}] user=&{zregvart a87c1d5b-1c39-11e7-b66a-0e6aaf341bbf [dedicated-admins syndesis system:authenticated:oauth system:authenticated] map[scopes.authorization.openshift.io:[user:full]]} ownerrules=[{[get] [user.openshift.io ] [users] [~] []} {[list] [project.openshift.io ] [projectrequests] [] []} {[get list] [authorization.openshift.io ] [clusterroles] [] []} {[get list] [storage.k8s.io] [storageclasses] [] []} {[list watch] [project.openshift.io ] [projects] [] []} {[create] [authorization.openshift.io ] [selfsubjectrulesreviews] [] []} {[create] [authorization.k8s.io] [selfsubjectaccessreviews] [] []} {[get] [rbac.authorization.k8s.io] [clusterroles] [] []} {[list] [rbac.authorization.k8s.io] [clusterroles] [] []} {[watch] [rbac.authorization.k8s.io] [clusterroles] [] []} {[get] [] [namespaces] [] []} {[get] [] [] [] [/healthz /healthz/*]} {[get] [] [] [] [/.well-known /.well-known/* /api /api/* /apis /apis/* /oapi /oapi/* /osapi /osapi/ /swagger.json /swaggerapi /swaggerapi/* /version /version/*]} {[get] [] [] [] [/]} {[get] [] [] [] [/swagger-2.0.0.pb-v1]} {[get] [] [] [] [/openapi/v2]} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [authorization.openshift.io ] [selfsubjectrulesreviews] [] []} {[create] [authorization.k8s.io] [selfsubjectaccessreviews] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [authorization.k8s.io] [selfsubjectaccessreviews] [] []} {[create] [authorization.k8s.io] [selfsubjectrulesreviews] [] []} {[create] [build.openshift.io ] [builds/custom] [] []} {[create] [build.openshift.io ] [builds/docker builds/optimizeddocker] [] []} {[create] [build.openshift.io ] [builds/jenkinspipeline] [] []} {[create] [build.openshift.io ] [builds/source] [] []} {[get] [] [] [] [/.well-known /.well-known/* /api /api/* /apis /apis/* /oapi /oapi/* /osapi /osapi/ /swagger.json /swaggerapi /swaggerapi/* /version /version/*]} {[get] [] [] [] [/]} {[get] [] [] [] [/swagger-2.0.0.pb-v1]} {[get] [] [] [] [/openapi/v2]} {[get] [] [] [] [/healthz]} {[get] [] [] [] [/openapi]} {[get] [] [] [] [/openapi/*]} {[get] [] [] [] [/.well-known /.well-known/* /api /api/* /apis /apis/* /oapi /oapi/* /osapi /osapi/ /swagger.json /swaggerapi /swaggerapi/* /version /version/*]} {[get] [] [] [] [/]} {[get] [] [] [] [/swagger-2.0.0.pb-v1]} {[get] [] [] [] [/openapi/v2]} {[get] [] [] [] [/healthz]} {[get] [] [] [] [/openapi]} {[get] [] [] [] [/openapi/*]} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[delete] [oauth.openshift.io ] [oauthaccesstokens oauthauthorizetokens] [] []} {[get] [] [] [] [/version /version/* /api /api/* /apis /apis/* /oapi /oapi/* /openapi/v2 /swaggerapi /swaggerapi/* /swagger.json /swagger-2.0.0.pb-v1 /osapi /osapi/ /.well-known /.well-known/* /]} {[impersonate] [authentication.k8s.io] [userextras/scopes.authorization.openshift.io] [] []} {[create get] [build.openshift.io ] [buildconfigs/webhooks] [] []} {[*] [camel.apache.org] [*] [] []} {[create delete deletecollection get list patch update watch] [] [pods pods/attach pods/exec pods/portforward pods/proxy] [] []} {[create delete deletecollection get list patch update watch] [] [configmaps endpoints persistentvolumeclaims replicationcontrollers replicationcontrollers/scale secrets serviceaccounts services services/proxy] [] []} {[get list watch] [] [bindings events limitranges namespaces/status pods/log pods/status replicationcontrollers/status resourcequotas resourcequotas/status] [] []} {[get list watch] [] [namespaces] [] []} {[impersonate] [] [serviceaccounts] [] []} {[create delete deletecollection get list patch update watch] [apps] [daemonsets deployments deployments/rollback deployments/scale replicasets replicasets/scale statefulsets] [] []} {[create delete deletecollection get list patch update watch] [autoscaling] [horizontalpodautoscalers] [] []} {[create delete deletecollection get list patch update watch] [batch] [cronjobs jobs] [] []} {[create delete deletecollection get list patch update watch] [extensions] [daemonsets deployments deployments/rollback deployments/scale ingresses replicasets replicasets/scale replicationcontrollers/scale] [] []} {[create delete deletecollection get list patch update watch] [policy] [poddisruptionbudgets] [] []} {[create] [authorization.k8s.io] [localsubjectaccessreviews] [] []} {[create delete deletecollection get list patch update watch] [rbac.authorization.k8s.io] [rolebindings roles] [] []} {[create] [apps] [statefulsets/scale] [] []} {[delete] [apps] [statefulsets/scale] [] []} {[deletecollection] [apps] [statefulsets/scale] [] []} {[get] [apps] [statefulsets/scale] [] []} {[list] [apps] [statefulsets/scale] [] []} {[patch] [apps] [statefulsets/scale] [] []} {[update] [apps] [statefulsets/scale] [] []} {[watch] [apps] [statefulsets/scale] [] []} {[create] [extensions] [networkpolicies] [] []} {[delete] [extensions] [networkpolicies] [] []} {[deletecollection] [extensions] [networkpolicies] [] []} {[get] [extensions] [networkpolicies] [] []} {[list] [extensions] [networkpolicies] [] []} {[patch] [extensions] [networkpolicies] [] []} {[update] [extensions] [networkpolicies] [] []} {[watch] [extensions] [networkpolicies] [] []} {[create] [networking.k8s.io] [networkpolicies] [] []} {[delete] [networking.k8s.io] [networkpolicies] [] []} {[deletecollection] [networking.k8s.io] [networkpolicies] [] []} {[get] [networking.k8s.io] [networkpolicies] [] []} {[list] [networking.k8s.io] [networkpolicies] [] []} {[patch] [networking.k8s.io] [networkpolicies] [] []} {[update] [networking.k8s.io] [networkpolicies] [] []} {[watch] [networking.k8s.io] [networkpolicies] [] []} {[get list watch] [] [bindings events limitranges namespaces namespaces/status pods/log pods/status replicationcontrollers/status resourcequotas resourcequotas/status] [] []} {[create delete deletecollection get list patch update watch] [batch] [cronjobs jobs scheduledjobs] [] []} {[create delete deletecollection get list patch update watch] [extensions] [deployments deployments/rollback deployments/scale horizontalpodautoscalers jobs networkpolicies replicasets replicasets/scale replicationcontrollers/scale] [] []} {[get list watch] [extensions] [daemonsets] [] []} {[create delete deletecollection get list patch update watch] [apps] [deployments deployments/scale deployments/status statefulsets] [] []} {[create delete deletecollection get list patch update watch] [authorization.openshift.io ] [rolebindings roles] [] []} {[create] [authorization.openshift.io ] [localresourceaccessreviews localsubjectaccessreviews subjectrulesreviews] [] []} {[create] [security.openshift.io ] [podsecuritypolicyreviews podsecuritypolicyselfsubjectreviews podsecuritypolicysubjectreviews] [] []} {[get list watch] [authorization.openshift.io ] [policies policybindings rolebindingrestrictions] [] []} {[create delete deletecollection get list patch update watch] [build.openshift.io ] [buildconfigs buildconfigs/webhooks builds] [] []} {[get list watch] [build.openshift.io ] [builds/log] [] []} {[create] [build.openshift.io ] [buildconfigs/instantiate buildconfigs/instantiatebinary builds/clone] [] []} {[update] [build.openshift.io ] [builds/details] [] []} {[admin edit view] [build.openshift.io] [jenkins] [] []} {[create delete deletecollection get list patch update watch] [apps.openshift.io ] [deploymentconfigs deploymentconfigs/scale generatedeploymentconfigs] [] []} {[create] [apps.openshift.io ] [deploymentconfigrollbacks deploymentconfigs/instantiate deploymentconfigs/rollback] [] []} {[get list watch] [apps.openshift.io ] [deploymentconfigs/log deploymentconfigs/status] [] []} {[create delete deletecollection get list patch update watch] [image.openshift.io ] [imagestreamimages imagestreammappings imagestreams imagestreams/secrets imagestreamtags] [] []} {[get list watch] [image.openshift.io ] [imagestreams/status] [] []} {[get update] [image.openshift.io ] [imagestreams/layers] [] []} {[create] [image.openshift.io ] [imagestreamimports] [] []} {[delete get patch update] [project.openshift.io ] [projects] [] []} {[get list watch] [quota.openshift.io ] [appliedclusterresourcequotas] [] []} {[create delete deletecollection get list patch update watch] [route.openshift.io ] [routes] [] []} {[create] [route.openshift.io ] [routes/custom-host] [] []} {[get list watch] [route.openshift.io ] [routes/status] [] []} {[update] [route.openshift.io ] [routes/status] [] []} {[create delete deletecollection get list patch update watch] [template.openshift.io ] [processedtemplates templateconfigs templateinstances templates] [] []} {[create delete deletecollection get list patch update watch] [build.openshift.io ] [buildlogs] [] []} {[get list watch] [] [resourcequotausages] [] []} {[create] [authorization.openshift.io ] [resourceaccessreviews subjectaccessreviews] [] []} {[patch] [apps] [petsets] [] []} {[update] [apps] [petsets] [] []} {[watch] [apps] [petsets] [] []} {[create] [apps] [petsets] [] []} {[delete] [apps] [petsets] [] []} {[deletecollection] [apps] [petsets] [] []} {[get] [apps] [petsets] [] []} {[list] [apps] [petsets] [] []} {[patch] [] [deploymentconfigrollbacks] [] []} {[update] [] [deploymentconfigrollbacks] [] []} {[watch] [] [deploymentconfigrollbacks] [] []} {[delete] [] [deploymentconfigrollbacks] [] []} {[deletecollection] [] [deploymentconfigrollbacks] [] []} {[get] [] [deploymentconfigrollbacks] [] []} {[list] [] [deploymentconfigrollbacks] [] []} {[list] [] [deploymentconfigs/rollback] [] []} {[patch] [] [deploymentconfigs/rollback] [] []} {[update] [] [deploymentconfigs/rollback] [] []} {[watch] [] [deploymentconfigs/rollback] [] []} {[delete] [] [deploymentconfigs/rollback] [] []} {[deletecollection] [] [deploymentconfigs/rollback] [] []} {[get] [] [deploymentconfigs/rollback] [] []} {[create] [] [pods/log] [] []} {[delete] [] [pods/log] [] []} {[deletecollection] [] [pods/log] [] []} {[patch] [] [pods/log] [] []} {[update] [] [pods/log] [] []} {[update] [] [deploymentconfigs/log] [] []} {[create] [] [deploymentconfigs/log] [] []} {[delete] [] [deploymentconfigs/log] [] []} {[deletecollection] [] [deploymentconfigs/log] [] []} {[patch] [] [deploymentconfigs/log] [] []} {[list] [] [deployments] [] []} {[patch] [] [deployments] [] []} {[update] [] [deployments] [] []} {[watch] [] [deployments] [] []} {[create] [] [deployments] [] []} {[delete] [] [deployments] [] []} {[deletecollection] [] [deployments] [] []} {[get] [] [deployments] [] []} {[list] [] [subjectaccessreviews] [] []} {[patch] [] [subjectaccessreviews] [] []} {[update] [] [subjectaccessreviews] [] []} {[watch] [] [subjectaccessreviews] [] []} {[delete] [] [subjectaccessreviews] [] []} {[deletecollection] [] [subjectaccessreviews] [] []} {[get] [] [subjectaccessreviews] [] []} {[list] [] [buildconfigs/instantiatebinary] [] []} {[patch] [] [buildconfigs/instantiatebinary] [] []} {[update] [] [buildconfigs/instantiatebinary] [] []} {[watch] [] [buildconfigs/instantiatebinary] [] []} {[delete] [] [buildconfigs/instantiatebinary] [] []} {[deletecollection] [] [buildconfigs/instantiatebinary] [] []} {[get] [] [buildconfigs/instantiatebinary] [] []} {[delete] [] [localresourceaccessreviews] [] []} {[deletecollection] [] [localresourceaccessreviews] [] []} {[get] [] [localresourceaccessreviews] [] []} {[list] [] [localresourceaccessreviews] [] []} {[patch] [] [localresourceaccessreviews] [] []} {[update] [] [localresourceaccessreviews] [] []} {[watch] [] [localresourceaccessreviews] [] []} {[deletecollection] [] [projects] [] []} {[list] [] [projects] [] []} {[watch] [] [projects] [] []} {[create] [] [projects] [] []} {[patch] [] [resourceaccessreviews] [] []} {[update] [] [resourceaccessreviews] [] []} {[watch] [] [resourceaccessreviews] [] []} {[delete] [] [resourceaccessreviews] [] []} {[deletecollection] [] [resourceaccessreviews] [] []} {[get] [] [resourceaccessreviews] [] []} {[list] [] [resourceaccessreviews] [] []} {[deletecollection] [] [buildconfigs/instantiate] [] []} {[get] [] [buildconfigs/instantiate] [] []} {[list] [] [buildconfigs/instantiate] [] []} {[patch] [] [buildconfigs/instantiate] [] []} {[update] [] [buildconfigs/instantiate] [] []} {[watch] [] [buildconfigs/instantiate] [] []} {[delete] [] [buildconfigs/instantiate] [] []} {[patch] [] [builds/log] [] []} {[update] [] [builds/log] [] []} {[create] [] [builds/log] [] []} {[delete] [] [builds/log] [] []} {[deletecollection] [] [builds/log] [] []} {[watch] [] [imagestreamimports] [] []} {[delete] [] [imagestreamimports] [] []} {[deletecollection] [] [imagestreamimports] [] []} {[get] [] [imagestreamimports] [] []} {[list] [] [imagestreamimports] [] []} {[patch] [] [imagestreamimports] [] []} {[update] [] [imagestreamimports] [] []} {[patch] [] [builds/clone] [] []} {[update] [] [builds/clone] [] []} {[watch] [] [builds/clone] [] []} {[delete] [] [builds/clone] [] []} {[deletecollection] [] [builds/clone] [] []} {[get] [] [builds/clone] [] []} {[list] [] [builds/clone] [] []} {[watch] [] [localsubjectaccessreviews] [] []} {[delete] [] [localsubjectaccessreviews] [] []} {[deletecollection] [] [localsubjectaccessreviews] [] []} {[get] [] [localsubjectaccessreviews] [] []} {[list] [] [localsubjectaccessreviews] [] []} {[patch] [] [localsubjectaccessreviews] [] []} {[update] [] [localsubjectaccessreviews] [] []} {[get] [] [securitycontextconstraints] [] []} {[list] [] [securitycontextconstraints] [] []} {[watch] [] [securitycontextconstraints] [] []} {[get] [] [minions] [] []} {[list] [] [minions] [] []} {[watch] [] [minions] [] []} {[get] [] [nodes] [] []} {[list] [] [nodes] [] []} {[watch] [] [nodes] [] []} {[get] [] [persistentvolumes] [] []} {[list] [] [persistentvolumes] [] []} {[watch] [] [persistentvolumes] [] []} {[create] [rbac.authorization.k8s.io] [rolebindings] [] []} {[delete] [rbac.authorization.k8s.io] [rolebindings] [] []} {[deletecollection] [rbac.authorization.k8s.io] [rolebindings] [] []} {[get] [rbac.authorization.k8s.io] [rolebindings] [] []} {[list] [rbac.authorization.k8s.io] [rolebindings] [] []} {[patch] [rbac.authorization.k8s.io] [rolebindings] [] []} {[update] [rbac.authorization.k8s.io] [rolebindings] [] []} {[watch] [rbac.authorization.k8s.io] [rolebindings] [] []} {[create] [rbac.authorization.k8s.io] [roles] [] []} {[delete] [rbac.authorization.k8s.io] [roles] [] []} {[deletecollection] [rbac.authorization.k8s.io] [roles] [] []} {[get] [rbac.authorization.k8s.io] [roles] [] []} {[list] [rbac.authorization.k8s.io] [roles] [] []} {[patch] [rbac.authorization.k8s.io] [roles] [] []} {[update] [rbac.authorization.k8s.io] [roles] [] []} {[watch] [rbac.authorization.k8s.io] [roles] [] []} {[create] [apps] [deployments/rollback] [] []} {[delete] [apps] [deployments/rollback] [] []} {[deletecollection] [apps] [deployments/rollback] [] []} {[get] [apps] [deployments/rollback] [] []} {[list] [apps] [deployments/rollback] [] []} {[patch] [apps] [deployments/rollback] [] []} {[update] [apps] [deployments/rollback] [] []} {[watch] [apps] [deployments/rollback] [] []} {[create] [apps] [replicasets] [] []} {[delete] [apps] [replicasets] [] []} {[deletecollection] [apps] [replicasets] [] []} {[get] [apps] [replicasets] [] []} {[list] [apps] [replicasets] [] []} {[patch] [apps] [replicasets] [] []} {[update] [apps] [replicasets] [] []} {[watch] [apps] [replicasets] [] []} {[create] [apps] [replicasets/scale] [] []} {[delete] [apps] [replicasets/scale] [] []} {[deletecollection] [apps] [replicasets/scale] [] []} {[get] [apps] [replicasets/scale] [] []} {[list] [apps] [replicasets/scale] [] []} {[patch] [apps] [replicasets/scale] [] []} {[update] [apps] [replicasets/scale] [] []} {[watch] [apps] [replicasets/scale] [] []} {[create] [apps] [replicationcontrollers/scale] [] []} {[delete] [apps] [replicationcontrollers/scale] [] []} {[deletecollection] [apps] [replicationcontrollers/scale] [] []} {[get] [apps] [replicationcontrollers/scale] [] []} {[list] [apps] [replicationcontrollers/scale] [] []} {[patch] [apps] [replicationcontrollers/scale] [] []} {[update] [apps] [replicationcontrollers/scale] [] []} {[watch] [apps] [replicationcontrollers/scale] [] []} {[get] [apps] [daemonsets] [] []} {[list] [apps] [daemonsets] [] []} {[watch] [apps] [daemonsets] [] []} {[create update delete get list watch patch] [servicecatalog.k8s.io] [serviceinstances servicebindings] [] []} {[create update delete get list watch] [settings.k8s.io] [podpresets] [] []}] ruleResolutionErrors=[]
error: roles.rbac.authorization.k8s.io "syndesis-knative-reader" not found
- unable to create
syndesis-editor
role:
error: roles.rbac.authorization.k8s.io "syndesis-editor" is forbidden: attempt to grant extra privileges: [{[create] [] [replicationcontrollers/status] [] []} {[update] [] [replicationcontrollers/status] [] []} {[delete] [] [replicationcontrollers/status] [] []} {[deletecollection] [] [replicationcontrollers/status] [] []} {[get] [] [builds/details] [] []} {[list] [] [builds/details] [] []} {[create] [] [builds/details] [] []} {[delete] [] [builds/details] [] []} {[deletecollection] [] [builds/details] [] []} {[watch] [] [builds/details] [] []} {[get] [build.openshift.io] [builds/details] [] []} {[list] [build.openshift.io] [builds/details] [] []} {[create] [build.openshift.io] [builds/details] [] []} {[delete] [build.openshift.io] [builds/details] [] []} {[deletecollection] [build.openshift.io] [builds/details] [] []} {[watch] [build.openshift.io] [builds/details] [] []} {[get] [build.openshift.io] [buildconfigs/instantiatebinary] [] []} {[list] [build.openshift.io] [buildconfigs/instantiatebinary] [] []} {[update] [build.openshift.io] [buildconfigs/instantiatebinary] [] []} {[delete] [build.openshift.io] [buildconfigs/instantiatebinary] [] []} {[deletecollection] [build.openshift.io] [buildconfigs/instantiatebinary] [] []} {[watch] [build.openshift.io] [buildconfigs/instantiatebinary] [] []} {[create] [build.openshift.io] [builds/log] [] []} {[update] [build.openshift.io] [builds/log] [] []} {[delete] [build.openshift.io] [builds/log] [] []} {[deletecollection] [build.openshift.io] [builds/log] [] []} {[get] [image.openshift.io] [imagestreamimports] [] []} {[list] [image.openshift.io] [imagestreamimports] [] []} {[watch] [image.openshift.io] [imagestreamimports] [] []}] user=&{zregvart a87c1d5b-1c39-11e7-b66a-0e6aaf341bbf [dedicated-admins syndesis system:authenticated:oauth system:authenticated] map[scopes.authorization.openshift.io:[user:full]]} ownerrules=[{[get] [user.openshift.io ] [users] [~] []} {[list] [project.openshift.io ] [projectrequests] [] []} {[get list] [authorization.openshift.io ] [clusterroles] [] []} {[get list] [storage.k8s.io] [storageclasses] [] []} {[list watch] [project.openshift.io ] [projects] [] []} {[create] [authorization.openshift.io ] [selfsubjectrulesreviews] [] []} {[create] [authorization.k8s.io] [selfsubjectaccessreviews] [] []} {[get] [rbac.authorization.k8s.io] [clusterroles] [] []} {[list] [rbac.authorization.k8s.io] [clusterroles] [] []} {[watch] [rbac.authorization.k8s.io] [clusterroles] [] []} {[get] [] [namespaces] [] []} {[get] [] [] [] [/healthz /healthz/*]} {[get] [] [] [] [/.well-known /.well-known/* /api /api/* /apis /apis/* /oapi /oapi/* /osapi /osapi/ /swagger.json /swaggerapi /swaggerapi/* /version /version/*]} {[get] [] [] [] [/]} {[get] [] [] [] [/swagger-2.0.0.pb-v1]} {[get] [] [] [] [/openapi/v2]} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [authorization.openshift.io ] [selfsubjectrulesreviews] [] []} {[create] [authorization.k8s.io] [selfsubjectaccessreviews] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [authorization.k8s.io] [selfsubjectaccessreviews] [] []} {[create] [authorization.k8s.io] [selfsubjectrulesreviews] [] []} {[create] [build.openshift.io ] [builds/custom] [] []} {[create] [build.openshift.io ] [builds/docker builds/optimizeddocker] [] []} {[create] [build.openshift.io ] [builds/jenkinspipeline] [] []} {[create] [build.openshift.io ] [builds/source] [] []} {[get] [] [] [] [/.well-known /.well-known/* /api /api/* /apis /apis/* /oapi /oapi/* /osapi /osapi/ /swagger.json /swaggerapi /swaggerapi/* /version /version/*]} {[get] [] [] [] [/]} {[get] [] [] [] [/swagger-2.0.0.pb-v1]} {[get] [] [] [] [/openapi/v2]} {[get] [] [] [] [/healthz]} {[get] [] [] [] [/openapi]} {[get] [] [] [] [/openapi/*]} {[get] [] [] [] [/.well-known /.well-known/* /api /api/* /apis /apis/* /oapi /oapi/* /osapi /osapi/ /swagger.json /swaggerapi /swaggerapi/* /version /version/*]} {[get] [] [] [] [/]} {[get] [] [] [] [/swagger-2.0.0.pb-v1]} {[get] [] [] [] [/openapi/v2]} {[get] [] [] [] [/healthz]} {[get] [] [] [] [/openapi]} {[get] [] [] [] [/openapi/*]} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[delete] [oauth.openshift.io ] [oauthaccesstokens oauthauthorizetokens] [] []} {[get] [] [] [] [/version /version/* /api /api/* /apis /apis/* /oapi /oapi/* /openapi/v2 /swaggerapi /swaggerapi/* /swagger.json /swagger-2.0.0.pb-v1 /osapi /osapi/ /.well-known /.well-known/* /]} {[impersonate] [authentication.k8s.io] [userextras/scopes.authorization.openshift.io] [] []} {[create get] [build.openshift.io ] [buildconfigs/webhooks] [] []} {[*] [camel.apache.org] [*] [] []} {[create delete deletecollection get list patch update watch] [] [pods pods/attach pods/exec pods/portforward pods/proxy] [] []} {[create delete deletecollection get list patch update watch] [] [configmaps endpoints persistentvolumeclaims replicationcontrollers replicationcontrollers/scale secrets serviceaccounts services services/proxy] [] []} {[get list watch] [] [bindings events limitranges namespaces/status pods/log pods/status replicationcontrollers/status resourcequotas resourcequotas/status] [] []} {[get list watch] [] [namespaces] [] []} {[impersonate] [] [serviceaccounts] [] []} {[create delete deletecollection get list patch update watch] [apps] [daemonsets deployments deployments/rollback deployments/scale replicasets replicasets/scale statefulsets] [] []} {[create delete deletecollection get list patch update watch] [autoscaling] [horizontalpodautoscalers] [] []} {[create delete deletecollection get list patch update watch] [batch] [cronjobs jobs] [] []} {[create delete deletecollection get list patch update watch] [extensions] [daemonsets deployments deployments/rollback deployments/scale ingresses replicasets replicasets/scale replicationcontrollers/scale] [] []} {[create delete deletecollection get list patch update watch] [policy] [poddisruptionbudgets] [] []} {[create] [authorization.k8s.io] [localsubjectaccessreviews] [] []} {[create delete deletecollection get list patch update watch] [rbac.authorization.k8s.io] [rolebindings roles] [] []} {[create] [apps] [statefulsets/scale] [] []} {[delete] [apps] [statefulsets/scale] [] []} {[deletecollection] [apps] [statefulsets/scale] [] []} {[get] [apps] [statefulsets/scale] [] []} {[list] [apps] [statefulsets/scale] [] []} {[patch] [apps] [statefulsets/scale] [] []} {[update] [apps] [statefulsets/scale] [] []} {[watch] [apps] [statefulsets/scale] [] []} {[create] [extensions] [networkpolicies] [] []} {[delete] [extensions] [networkpolicies] [] []} {[deletecollection] [extensions] [networkpolicies] [] []} {[get] [extensions] [networkpolicies] [] []} {[list] [extensions] [networkpolicies] [] []} {[patch] [extensions] [networkpolicies] [] []} {[update] [extensions] [networkpolicies] [] []} {[watch] [extensions] [networkpolicies] [] []} {[create] [networking.k8s.io] [networkpolicies] [] []} {[delete] [networking.k8s.io] [networkpolicies] [] []} {[deletecollection] [networking.k8s.io] [networkpolicies] [] []} {[get] [networking.k8s.io] [networkpolicies] [] []} {[list] [networking.k8s.io] [networkpolicies] [] []} {[patch] [networking.k8s.io] [networkpolicies] [] []} {[update] [networking.k8s.io] [networkpolicies] [] []} {[watch] [networking.k8s.io] [networkpolicies] [] []} {[get list watch] [] [bindings events limitranges namespaces namespaces/status pods/log pods/status replicationcontrollers/status resourcequotas resourcequotas/status] [] []} {[create delete deletecollection get list patch update watch] [batch] [cronjobs jobs scheduledjobs] [] []} {[create delete deletecollection get list patch update watch] [extensions] [deployments deployments/rollback deployments/scale horizontalpodautoscalers jobs networkpolicies replicasets replicasets/scale replicationcontrollers/scale] [] []} {[get list watch] [extensions] [daemonsets] [] []} {[create delete deletecollection get list patch update watch] [apps] [deployments deployments/scale deployments/status statefulsets] [] []} {[create delete deletecollection get list patch update watch] [authorization.openshift.io ] [rolebindings roles] [] []} {[create] [authorization.openshift.io ] [localresourceaccessreviews localsubjectaccessreviews subjectrulesreviews] [] []} {[create] [security.openshift.io ] [podsecuritypolicyreviews podsecuritypolicyselfsubjectreviews podsecuritypolicysubjectreviews] [] []} {[get list watch] [authorization.openshift.io ] [policies policybindings rolebindingrestrictions] [] []} {[create delete deletecollection get list patch update watch] [build.openshift.io ] [buildconfigs buildconfigs/webhooks builds] [] []} {[get list watch] [build.openshift.io ] [builds/log] [] []} {[create] [build.openshift.io ] [buildconfigs/instantiate buildconfigs/instantiatebinary builds/clone] [] []} {[update] [build.openshift.io ] [builds/details] [] []} {[admin edit view] [build.openshift.io] [jenkins] [] []} {[create delete deletecollection get list patch update watch] [apps.openshift.io ] [deploymentconfigs deploymentconfigs/scale generatedeploymentconfigs] [] []} {[create] [apps.openshift.io ] [deploymentconfigrollbacks deploymentconfigs/instantiate deploymentconfigs/rollback] [] []} {[get list watch] [apps.openshift.io ] [deploymentconfigs/log deploymentconfigs/status] [] []} {[create delete deletecollection get list patch update watch] [image.openshift.io ] [imagestreamimages imagestreammappings imagestreams imagestreams/secrets imagestreamtags] [] []} {[get list watch] [image.openshift.io ] [imagestreams/status] [] []} {[get update] [image.openshift.io ] [imagestreams/layers] [] []} {[create] [image.openshift.io ] [imagestreamimports] [] []} {[delete get patch update] [project.openshift.io ] [projects] [] []} {[get list watch] [quota.openshift.io ] [appliedclusterresourcequotas] [] []} {[create delete deletecollection get list patch update watch] [route.openshift.io ] [routes] [] []} {[create] [route.openshift.io ] [routes/custom-host] [] []} {[get list watch] [route.openshift.io ] [routes/status] [] []} {[update] [route.openshift.io ] [routes/status] [] []} {[create delete deletecollection get list patch update watch] [template.openshift.io ] [processedtemplates templateconfigs templateinstances templates] [] []} {[create delete deletecollection get list patch update watch] [build.openshift.io ] [buildlogs] [] []} {[get list watch] [] [resourcequotausages] [] []} {[create] [authorization.openshift.io ] [resourceaccessreviews subjectaccessreviews] [] []} {[patch] [apps] [petsets] [] []} {[update] [apps] [petsets] [] []} {[watch] [apps] [petsets] [] []} {[create] [apps] [petsets] [] []} {[delete] [apps] [petsets] [] []} {[deletecollection] [apps] [petsets] [] []} {[get] [apps] [petsets] [] []} {[list] [apps] [petsets] [] []} {[patch] [] [deploymentconfigrollbacks] [] []} {[update] [] [deploymentconfigrollbacks] [] []} {[watch] [] [deploymentconfigrollbacks] [] []} {[delete] [] [deploymentconfigrollbacks] [] []} {[deletecollection] [] [deploymentconfigrollbacks] [] []} {[get] [] [deploymentconfigrollbacks] [] []} {[list] [] [deploymentconfigrollbacks] [] []} {[list] [] [deploymentconfigs/rollback] [] []} {[patch] [] [deploymentconfigs/rollback] [] []} {[update] [] [deploymentconfigs/rollback] [] []} {[watch] [] [deploymentconfigs/rollback] [] []} {[delete] [] [deploymentconfigs/rollback] [] []} {[deletecollection] [] [deploymentconfigs/rollback] [] []} {[get] [] [deploymentconfigs/rollback] [] []} {[create] [] [pods/log] [] []} {[delete] [] [pods/log] [] []} {[deletecollection] [] [pods/log] [] []} {[patch] [] [pods/log] [] []} {[update] [] [pods/log] [] []} {[update] [] [deploymentconfigs/log] [] []} {[create] [] [deploymentconfigs/log] [] []} {[delete] [] [deploymentconfigs/log] [] []} {[deletecollection] [] [deploymentconfigs/log] [] []} {[patch] [] [deploymentconfigs/log] [] []} {[list] [] [deployments] [] []} {[patch] [] [deployments] [] []} {[update] [] [deployments] [] []} {[watch] [] [deployments] [] []} {[create] [] [deployments] [] []} {[delete] [] [deployments] [] []} {[deletecollection] [] [deployments] [] []} {[get] [] [deployments] [] []} {[list] [] [subjectaccessreviews] [] []} {[patch] [] [subjectaccessreviews] [] []} {[update] [] [subjectaccessreviews] [] []} {[watch] [] [subjectaccessreviews] [] []} {[delete] [] [subjectaccessreviews] [] []} {[deletecollection] [] [subjectaccessreviews] [] []} {[get] [] [subjectaccessreviews] [] []} {[list] [] [buildconfigs/instantiatebinary] [] []} {[patch] [] [buildconfigs/instantiatebinary] [] []} {[update] [] [buildconfigs/instantiatebinary] [] []} {[watch] [] [buildconfigs/instantiatebinary] [] []} {[delete] [] [buildconfigs/instantiatebinary] [] []} {[deletecollection] [] [buildconfigs/instantiatebinary] [] []} {[get] [] [buildconfigs/instantiatebinary] [] []} {[delete] [] [localresourceaccessreviews] [] []} {[deletecollection] [] [localresourceaccessreviews] [] []} {[get] [] [localresourceaccessreviews] [] []} {[list] [] [localresourceaccessreviews] [] []} {[patch] [] [localresourceaccessreviews] [] []} {[update] [] [localresourceaccessreviews] [] []} {[watch] [] [localresourceaccessreviews] [] []} {[deletecollection] [] [projects] [] []} {[list] [] [projects] [] []} {[watch] [] [projects] [] []} {[create] [] [projects] [] []} {[patch] [] [resourceaccessreviews] [] []} {[update] [] [resourceaccessreviews] [] []} {[watch] [] [resourceaccessreviews] [] []} {[delete] [] [resourceaccessreviews] [] []} {[deletecollection] [] [resourceaccessreviews] [] []} {[get] [] [resourceaccessreviews] [] []} {[list] [] [resourceaccessreviews] [] []} {[deletecollection] [] [buildconfigs/instantiate] [] []} {[get] [] [buildconfigs/instantiate] [] []} {[list] [] [buildconfigs/instantiate] [] []} {[patch] [] [buildconfigs/instantiate] [] []} {[update] [] [buildconfigs/instantiate] [] []} {[watch] [] [buildconfigs/instantiate] [] []} {[delete] [] [buildconfigs/instantiate] [] []} {[patch] [] [builds/log] [] []} {[update] [] [builds/log] [] []} {[create] [] [builds/log] [] []} {[delete] [] [builds/log] [] []} {[deletecollection] [] [builds/log] [] []} {[watch] [] [imagestreamimports] [] []} {[delete] [] [imagestreamimports] [] []} {[deletecollection] [] [imagestreamimports] [] []} {[get] [] [imagestreamimports] [] []} {[list] [] [imagestreamimports] [] []} {[patch] [] [imagestreamimports] [] []} {[update] [] [imagestreamimports] [] []} {[patch] [] [builds/clone] [] []} {[update] [] [builds/clone] [] []} {[watch] [] [builds/clone] [] []} {[delete] [] [builds/clone] [] []} {[deletecollection] [] [builds/clone] [] []} {[get] [] [builds/clone] [] []} {[list] [] [builds/clone] [] []} {[watch] [] [localsubjectaccessreviews] [] []} {[delete] [] [localsubjectaccessreviews] [] []} {[deletecollection] [] [localsubjectaccessreviews] [] []} {[get] [] [localsubjectaccessreviews] [] []} {[list] [] [localsubjectaccessreviews] [] []} {[patch] [] [localsubjectaccessreviews] [] []} {[update] [] [localsubjectaccessreviews] [] []} {[get] [] [securitycontextconstraints] [] []} {[list] [] [securitycontextconstraints] [] []} {[watch] [] [securitycontextconstraints] [] []} {[get] [] [minions] [] []} {[list] [] [minions] [] []} {[watch] [] [minions] [] []} {[get] [] [nodes] [] []} {[list] [] [nodes] [] []} {[watch] [] [nodes] [] []} {[get] [] [persistentvolumes] [] []} {[list] [] [persistentvolumes] [] []} {[watch] [] [persistentvolumes] [] []} {[create] [rbac.authorization.k8s.io] [rolebindings] [] []} {[delete] [rbac.authorization.k8s.io] [rolebindings] [] []} {[deletecollection] [rbac.authorization.k8s.io] [rolebindings] [] []} {[get] [rbac.authorization.k8s.io] [rolebindings] [] []} {[list] [rbac.authorization.k8s.io] [rolebindings] [] []} {[patch] [rbac.authorization.k8s.io] [rolebindings] [] []} {[update] [rbac.authorization.k8s.io] [rolebindings] [] []} {[watch] [rbac.authorization.k8s.io] [rolebindings] [] []} {[create] [rbac.authorization.k8s.io] [roles] [] []} {[delete] [rbac.authorization.k8s.io] [roles] [] []} {[deletecollection] [rbac.authorization.k8s.io] [roles] [] []} {[get] [rbac.authorization.k8s.io] [roles] [] []} {[list] [rbac.authorization.k8s.io] [roles] [] []} {[patch] [rbac.authorization.k8s.io] [roles] [] []} {[update] [rbac.authorization.k8s.io] [roles] [] []} {[watch] [rbac.authorization.k8s.io] [roles] [] []} {[create] [apps] [deployments/rollback] [] []} {[delete] [apps] [deployments/rollback] [] []} {[deletecollection] [apps] [deployments/rollback] [] []} {[get] [apps] [deployments/rollback] [] []} {[list] [apps] [deployments/rollback] [] []} {[patch] [apps] [deployments/rollback] [] []} {[update] [apps] [deployments/rollback] [] []} {[watch] [apps] [deployments/rollback] [] []} {[create] [apps] [replicasets] [] []} {[delete] [apps] [replicasets] [] []} {[deletecollection] [apps] [replicasets] [] []} {[get] [apps] [replicasets] [] []} {[list] [apps] [replicasets] [] []} {[patch] [apps] [replicasets] [] []} {[update] [apps] [replicasets] [] []} {[watch] [apps] [replicasets] [] []} {[create] [apps] [replicasets/scale] [] []} {[delete] [apps] [replicasets/scale] [] []} {[deletecollection] [apps] [replicasets/scale] [] []} {[get] [apps] [replicasets/scale] [] []} {[list] [apps] [replicasets/scale] [] []} {[patch] [apps] [replicasets/scale] [] []} {[update] [apps] [replicasets/scale] [] []} {[watch] [apps] [replicasets/scale] [] []} {[create] [apps] [replicationcontrollers/scale] [] []} {[delete] [apps] [replicationcontrollers/scale] [] []} {[deletecollection] [apps] [replicationcontrollers/scale] [] []} {[get] [apps] [replicationcontrollers/scale] [] []} {[list] [apps] [replicationcontrollers/scale] [] []} {[patch] [apps] [replicationcontrollers/scale] [] []} {[update] [apps] [replicationcontrollers/scale] [] []} {[watch] [apps] [replicationcontrollers/scale] [] []} {[get] [apps] [daemonsets] [] []} {[list] [apps] [daemonsets] [] []} {[watch] [apps] [daemonsets] [] []} {[create update delete get list watch patch] [servicecatalog.k8s.io] [serviceinstances servicebindings] [] []} {[create update delete get list watch] [settings.k8s.io] [podpresets] [] []}] ruleResolutionErrors=[]
error: roles.rbac.authorization.k8s.io "syndesis-editor" not found
- This leads to inability to publish integrations (the status remains Assembling) due to:
2019-07-02 07:09:55.006 INFO [-,,,] 1 --- [tion Controller] i.s.s.c.i.online.PublishHandler : Integration [logger]: Created project files and starting build
2019-07-02 07:09:55.908 ERROR [-,,,] 1 --- [tion Controller] i.s.s.c.i.online.PublishHandler : Integration [logger]: [ERROR] Activation failure
io.fabric8.kubernetes.client.KubernetesClientException: Failure executing: POST at: https://kubernetes.default.svc/apis/image.openshift.io/v1/namespaces/syndesis-test/imagestreams. Message: Forbidden!Configured service account doesn't have access. Service account may have been revoked. imagestreams.image.openshift.io is forbidden: User "system:serviceaccount:syndesis-test:syndesis-server" cannot create imagestreams.image.openshift.io in the namespace "syndesis-test": no RBAC policy matched.
at io.fabric8.kubernetes.client.dsl.base.OperationSupport.requestFailure(OperationSupport.java:472) ~[kubernetes-client-3.1.12.fuse-730022.jar!/:na]
at io.fabric8.kubernetes.client.dsl.base.OperationSupport.assertResponseCode(OperationSupport.java:409) ~[kubernetes-client-3.1.12.fuse-730022.jar!/:na]
at io.fabric8.kubernetes.client.dsl.base.OperationSupport.handleResponse(OperationSupport.java:381) ~[kubernetes-client-3.1.12.fuse-730022.jar!/:na]
at io.fabric8.kubernetes.client.dsl.base.OperationSupport.handleResponse(OperationSupport.java:344) ~[kubernetes-client-3.1.12.fuse-730022.jar!/:na]
at io.fabric8.kubernetes.client.dsl.base.OperationSupport.handleCreate(OperationSupport.java:227) ~[kubernetes-client-3.1.12.fuse-730022.jar!/:na]
at io.fabric8.kubernetes.client.dsl.base.BaseOperation.handleCreate(BaseOperation.java:766) ~[kubernetes-client-3.1.12.fuse-730022.jar!/:na]
at io.fabric8.kubernetes.client.dsl.base.BaseOperation.create(BaseOperation.java:335) ~[kubernetes-client-3.1.12.fuse-730022.jar!/:na]
at io.fabric8.kubernetes.client.dsl.base.BaseOperation.createOrReplace(BaseOperation.java:404) ~[kubernetes-client-3.1.12.fuse-730022.jar!/:na]
at io.fabric8.kubernetes.client.dsl.base.BaseOperation$2.apply(BaseOperation.java:373) ~[kubernetes-client-3.1.12.fuse-730022.jar!/:na]
at io.fabric8.openshift.api.model.DoneableImageStream.done(DoneableImageStream.java:27) ~[kubernetes-model-2.0.10.jar!/:2.0.10]
at io.syndesis.server.openshift.OpenShiftServiceImpl.ensureImageStreams(OpenShiftServiceImpl.java:213) ~[server-openshift-1.7.8.jar!/:1.7.8]
at io.syndesis.server.openshift.OpenShiftServiceImpl.build(OpenShiftServiceImpl.java:80) ~[server-openshift-1.7.8.jar!/:1.7.8]
at io.syndesis.server.controller.integration.online.PublishHandler.build(PublishHandler.java:173) ~[server-controller-1.7.8.jar!/:1.7.8]
at io.syndesis.server.controller.integration.online.PublishHandler$BuildStepOncePerformer.perform(PublishHandler.java:284) ~[server-controller-1.7.8.jar!/:1.7.8]
at io.syndesis.server.controller.integration.online.PublishHandler.execute(PublishHandler.java:101) ~[server-controller-1.7.8.jar!/:1.7.8]
at io.syndesis.server.controller.StateChangeHandler.execute(StateChangeHandler.java:33) [server-controller-1.7.8.jar!/:1.7.8]
at io.syndesis.server.controller.integration.BaseIntegrationController.lambda$callStateChangeHandler$10(BaseIntegrationController.java:220) [server-controller-1.7.8.jar!/:1.7.8]
at java.util.concurrent.ThreadPoolExecutor.runWorker(ThreadPoolExecutor.java:1149) ~[na:1.8.0_151]
at java.util.concurrent.ThreadPoolExecutor$Worker.run(ThreadPoolExecutor.java:624) ~[na:1.8.0_151]
at java.lang.Thread.run(Thread.java:748) ~[na:1.8.0_151]
Can you help with this one @lgarciaaco?
Issue Analytics
- State:
- Created 4 years ago
- Comments:20 (10 by maintainers)
Top Results From Across the Web
Permission issues when installing applications or games, after
Case in point, I am trying to install iTunes and part way through the installation the install stops and throws up an error...
Read more >Resolving Permission Issues When Installing Software in ...
Resolving Permission Issues When Installing Software in Windows 10.Windows 10 And 8.1 Change System Files And Folder User Permissions (ACL).
Read more >Troubleshoot Permission Issues - Bitnami Documentation
A permission issue occurs when an application (or system user) is performing an unauthorized operation in the filesystem.
Read more >Permission denied when trying to transfer template installer to ...
Run from Dom0. Expected behavior: Transfer the template to dom0. Actual behavior: bash: install-templates.sh: permission denied ...
Read more >Resolving EACCES permissions errors when installing ...
This is the best way to avoid permissions issues. To reinstall npm with a node version manager, follow the steps in "Downloading and...
Read more >Top Related Medium Post
No results found
Top Related StackOverflow Question
No results found
Troubleshoot Live Code
Lightrun enables developers to add logs, metrics and snapshots to live code - no restarts or redeploys required.
Start FreeTop Related Reddit Thread
No results found
Top Related Hackernoon Post
No results found
Top Related Tweet
No results found
Top Related Dev.to Post
No results found
Top Related Hashnode Post
No results found
Top GitHub Comments
@lgarciaaco Is on PTO, but I think @nicolaferraro might be able to help
Yeah, I should know the source. He was adding explicit permissions from edit account manually to the syndesis role, because it’s not possible to add a predefined account to operator hub. It’s possible that the edit account changed in ocp4 and this needs to be fixed to match the exact ocp3 role. I’ll do it later when I can reconnect back. That should be easy, e.g. we probably don’t need explicit authorizations on replication controllers.