question-mark
Stuck on an issue?

Lightrun Answers was designed to reduce the constant googling that comes with debugging 3rd party libraries. It collects links to all the places you might be looking at while hunting down a tough bug.

And, if you’re still stuck at the end, we’re happy to hop on a call to see how we can help out.

Permission issues when installing from the template

See original GitHub issue

This is a…


[ ] Feature request
[x] Regression (a behavior that used to work and stopped working in a new release)
[x] Bug report  
[ ] Documentation issue or request

Description

When installing from template via install-syndesis --legacy --tag 1.7.8 --project syndesis-test on our staging cluster there are permission issues:

  1. unable to create syndesis-knative-reader role and the role binding (as the role hasn’t been created):
   error: roles.rbac.authorization.k8s.io "syndesis-knative-reader" is forbidden: attempt to grant extra privileges: [{[get] [serving.knative.dev] [services] [] []} {[list] [serving.knative.dev] [services] [] []} {[watch] [serving.knative.dev] [services] [] []} {[get] [eventing.knative.dev] [channels] [] []} {[list] [eventing.knative.dev] [channels] [] []} {[watch] [eventing.knative.dev] [channels] [] []}] user=&{zregvart a87c1d5b-1c39-11e7-b66a-0e6aaf341bbf [dedicated-admins syndesis system:authenticated:oauth system:authenticated] map[scopes.authorization.openshift.io:[user:full]]} ownerrules=[{[get] [user.openshift.io ] [users] [~] []} {[list] [project.openshift.io ] [projectrequests] [] []} {[get list] [authorization.openshift.io ] [clusterroles] [] []} {[get list] [storage.k8s.io] [storageclasses] [] []} {[list watch] [project.openshift.io ] [projects] [] []} {[create] [authorization.openshift.io ] [selfsubjectrulesreviews] [] []} {[create] [authorization.k8s.io] [selfsubjectaccessreviews] [] []} {[get] [rbac.authorization.k8s.io] [clusterroles] [] []} {[list] [rbac.authorization.k8s.io] [clusterroles] [] []} {[watch] [rbac.authorization.k8s.io] [clusterroles] [] []} {[get] [] [namespaces] [] []} {[get] [] [] [] [/healthz /healthz/*]} {[get] [] [] [] [/.well-known /.well-known/* /api /api/* /apis /apis/* /oapi /oapi/* /osapi /osapi/ /swagger.json /swaggerapi /swaggerapi/* /version /version/*]} {[get] [] [] [] [/]} {[get] [] [] [] [/swagger-2.0.0.pb-v1]} {[get] [] [] [] [/openapi/v2]} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [authorization.openshift.io ] [selfsubjectrulesreviews] [] []} {[create] [authorization.k8s.io] [selfsubjectaccessreviews] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [authorization.k8s.io] [selfsubjectaccessreviews] [] []} {[create] [authorization.k8s.io] [selfsubjectrulesreviews] [] []} {[create] [build.openshift.io ] [builds/custom] [] []} {[create] [build.openshift.io ] [builds/docker builds/optimizeddocker] [] []} {[create] [build.openshift.io ] [builds/jenkinspipeline] [] []} {[create] [build.openshift.io ] [builds/source] [] []} {[get] [] [] [] [/.well-known /.well-known/* /api /api/* /apis /apis/* /oapi /oapi/* /osapi /osapi/ /swagger.json /swaggerapi /swaggerapi/* /version /version/*]} {[get] [] [] [] [/]} {[get] [] [] [] [/swagger-2.0.0.pb-v1]} {[get] [] [] [] [/openapi/v2]} {[get] [] [] [] [/healthz]} {[get] [] [] [] [/openapi]} {[get] [] [] [] [/openapi/*]} {[get] [] [] [] [/.well-known /.well-known/* /api /api/* /apis /apis/* /oapi /oapi/* /osapi /osapi/ /swagger.json /swaggerapi /swaggerapi/* /version /version/*]} {[get] [] [] [] [/]} {[get] [] [] [] [/swagger-2.0.0.pb-v1]} {[get] [] [] [] [/openapi/v2]} {[get] [] [] [] [/healthz]} {[get] [] [] [] [/openapi]} {[get] [] [] [] [/openapi/*]} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[delete] [oauth.openshift.io ] [oauthaccesstokens oauthauthorizetokens] [] []} {[get] [] [] [] [/version /version/* /api /api/* /apis /apis/* /oapi /oapi/* /openapi/v2 /swaggerapi /swaggerapi/* /swagger.json /swagger-2.0.0.pb-v1 /osapi /osapi/ /.well-known /.well-known/* /]} {[impersonate] [authentication.k8s.io] [userextras/scopes.authorization.openshift.io] [] []} {[create get] [build.openshift.io ] [buildconfigs/webhooks] [] []} {[*] [camel.apache.org] [*] [] []} {[create delete deletecollection get list patch update watch] [] [pods pods/attach pods/exec pods/portforward pods/proxy] [] []} {[create delete deletecollection get list patch update watch] [] [configmaps endpoints persistentvolumeclaims replicationcontrollers replicationcontrollers/scale secrets serviceaccounts services services/proxy] [] []} {[get list watch] [] [bindings events limitranges namespaces/status pods/log pods/status replicationcontrollers/status resourcequotas resourcequotas/status] [] []} {[get list watch] [] [namespaces] [] []} {[impersonate] [] [serviceaccounts] [] []} {[create delete deletecollection get list patch update watch] [apps] [daemonsets deployments deployments/rollback deployments/scale replicasets replicasets/scale statefulsets] [] []} {[create delete deletecollection get list patch update watch] [autoscaling] [horizontalpodautoscalers] [] []} {[create delete deletecollection get list patch update watch] [batch] [cronjobs jobs] [] []} {[create delete deletecollection get list patch update watch] [extensions] [daemonsets deployments deployments/rollback deployments/scale ingresses replicasets replicasets/scale replicationcontrollers/scale] [] []} {[create delete deletecollection get list patch update watch] [policy] [poddisruptionbudgets] [] []} {[create] [authorization.k8s.io] [localsubjectaccessreviews] [] []} {[create delete deletecollection get list patch update watch] [rbac.authorization.k8s.io] [rolebindings roles] [] []} {[create] [apps] [statefulsets/scale] [] []} {[delete] [apps] [statefulsets/scale] [] []} {[deletecollection] [apps] [statefulsets/scale] [] []} {[get] [apps] [statefulsets/scale] [] []} {[list] [apps] [statefulsets/scale] [] []} {[patch] [apps] [statefulsets/scale] [] []} {[update] [apps] [statefulsets/scale] [] []} {[watch] [apps] [statefulsets/scale] [] []} {[create] [extensions] [networkpolicies] [] []} {[delete] [extensions] [networkpolicies] [] []} {[deletecollection] [extensions] [networkpolicies] [] []} {[get] [extensions] [networkpolicies] [] []} {[list] [extensions] [networkpolicies] [] []} {[patch] [extensions] [networkpolicies] [] []} {[update] [extensions] [networkpolicies] [] []} {[watch] [extensions] [networkpolicies] [] []} {[create] [networking.k8s.io] [networkpolicies] [] []} {[delete] [networking.k8s.io] [networkpolicies] [] []} {[deletecollection] [networking.k8s.io] [networkpolicies] [] []} {[get] [networking.k8s.io] [networkpolicies] [] []} {[list] [networking.k8s.io] [networkpolicies] [] []} {[patch] [networking.k8s.io] [networkpolicies] [] []} {[update] [networking.k8s.io] [networkpolicies] [] []} {[watch] [networking.k8s.io] [networkpolicies] [] []} {[get list watch] [] [bindings events limitranges namespaces namespaces/status pods/log pods/status replicationcontrollers/status resourcequotas resourcequotas/status] [] []} {[create delete deletecollection get list patch update watch] [batch] [cronjobs jobs scheduledjobs] [] []} {[create delete deletecollection get list patch update watch] [extensions] [deployments deployments/rollback deployments/scale horizontalpodautoscalers jobs networkpolicies replicasets replicasets/scale replicationcontrollers/scale] [] []} {[get list watch] [extensions] [daemonsets] [] []} {[create delete deletecollection get list patch update watch] [apps] [deployments deployments/scale deployments/status statefulsets] [] []} {[create delete deletecollection get list patch update watch] [authorization.openshift.io ] [rolebindings roles] [] []} {[create] [authorization.openshift.io ] [localresourceaccessreviews localsubjectaccessreviews subjectrulesreviews] [] []} {[create] [security.openshift.io ] [podsecuritypolicyreviews podsecuritypolicyselfsubjectreviews podsecuritypolicysubjectreviews] [] []} {[get list watch] [authorization.openshift.io ] [policies policybindings rolebindingrestrictions] [] []} {[create delete deletecollection get list patch update watch] [build.openshift.io ] [buildconfigs buildconfigs/webhooks builds] [] []} {[get list watch] [build.openshift.io ] [builds/log] [] []} {[create] [build.openshift.io ] [buildconfigs/instantiate buildconfigs/instantiatebinary builds/clone] [] []} {[update] [build.openshift.io ] [builds/details] [] []} {[admin edit view] [build.openshift.io] [jenkins] [] []} {[create delete deletecollection get list patch update watch] [apps.openshift.io ] [deploymentconfigs deploymentconfigs/scale generatedeploymentconfigs] [] []} {[create] [apps.openshift.io ] [deploymentconfigrollbacks deploymentconfigs/instantiate deploymentconfigs/rollback] [] []} {[get list watch] [apps.openshift.io ] [deploymentconfigs/log deploymentconfigs/status] [] []} {[create delete deletecollection get list patch update watch] [image.openshift.io ] [imagestreamimages imagestreammappings imagestreams imagestreams/secrets imagestreamtags] [] []} {[get list watch] [image.openshift.io ] [imagestreams/status] [] []} {[get update] [image.openshift.io ] [imagestreams/layers] [] []} {[create] [image.openshift.io ] [imagestreamimports] [] []} {[delete get patch update] [project.openshift.io ] [projects] [] []} {[get list watch] [quota.openshift.io ] [appliedclusterresourcequotas] [] []} {[create delete deletecollection get list patch update watch] [route.openshift.io ] [routes] [] []} {[create] [route.openshift.io ] [routes/custom-host] [] []} {[get list watch] [route.openshift.io ] [routes/status] [] []} {[update] [route.openshift.io ] [routes/status] [] []} {[create delete deletecollection get list patch update watch] [template.openshift.io ] [processedtemplates templateconfigs templateinstances templates] [] []} {[create delete deletecollection get list patch update watch] [build.openshift.io ] [buildlogs] [] []} {[get list watch] [] [resourcequotausages] [] []} {[create] [authorization.openshift.io ] [resourceaccessreviews subjectaccessreviews] [] []} {[patch] [apps] [petsets] [] []} {[update] [apps] [petsets] [] []} {[watch] [apps] [petsets] [] []} {[create] [apps] [petsets] [] []} {[delete] [apps] [petsets] [] []} {[deletecollection] [apps] [petsets] [] []} {[get] [apps] [petsets] [] []} {[list] [apps] [petsets] [] []} {[patch] [] [deploymentconfigrollbacks] [] []} {[update] [] [deploymentconfigrollbacks] [] []} {[watch] [] [deploymentconfigrollbacks] [] []} {[delete] [] [deploymentconfigrollbacks] [] []} {[deletecollection] [] [deploymentconfigrollbacks] [] []} {[get] [] [deploymentconfigrollbacks] [] []} {[list] [] [deploymentconfigrollbacks] [] []} {[list] [] [deploymentconfigs/rollback] [] []} {[patch] [] [deploymentconfigs/rollback] [] []} {[update] [] [deploymentconfigs/rollback] [] []} {[watch] [] [deploymentconfigs/rollback] [] []} {[delete] [] [deploymentconfigs/rollback] [] []} {[deletecollection] [] [deploymentconfigs/rollback] [] []} {[get] [] [deploymentconfigs/rollback] [] []} {[create] [] [pods/log] [] []} {[delete] [] [pods/log] [] []} {[deletecollection] [] [pods/log] [] []} {[patch] [] [pods/log] [] []} {[update] [] [pods/log] [] []} {[update] [] [deploymentconfigs/log] [] []} {[create] [] [deploymentconfigs/log] [] []} {[delete] [] [deploymentconfigs/log] [] []} {[deletecollection] [] [deploymentconfigs/log] [] []} {[patch] [] [deploymentconfigs/log] [] []} {[list] [] [deployments] [] []} {[patch] [] [deployments] [] []} {[update] [] [deployments] [] []} {[watch] [] [deployments] [] []} {[create] [] [deployments] [] []} {[delete] [] [deployments] [] []} {[deletecollection] [] [deployments] [] []} {[get] [] [deployments] [] []} {[list] [] [subjectaccessreviews] [] []} {[patch] [] [subjectaccessreviews] [] []} {[update] [] [subjectaccessreviews] [] []} {[watch] [] [subjectaccessreviews] [] []} {[delete] [] [subjectaccessreviews] [] []} {[deletecollection] [] [subjectaccessreviews] [] []} {[get] [] [subjectaccessreviews] [] []} {[list] [] [buildconfigs/instantiatebinary] [] []} {[patch] [] [buildconfigs/instantiatebinary] [] []} {[update] [] [buildconfigs/instantiatebinary] [] []} {[watch] [] [buildconfigs/instantiatebinary] [] []} {[delete] [] [buildconfigs/instantiatebinary] [] []} {[deletecollection] [] [buildconfigs/instantiatebinary] [] []} {[get] [] [buildconfigs/instantiatebinary] [] []} {[delete] [] [localresourceaccessreviews] [] []} {[deletecollection] [] [localresourceaccessreviews] [] []} {[get] [] [localresourceaccessreviews] [] []} {[list] [] [localresourceaccessreviews] [] []} {[patch] [] [localresourceaccessreviews] [] []} {[update] [] [localresourceaccessreviews] [] []} {[watch] [] [localresourceaccessreviews] [] []} {[deletecollection] [] [projects] [] []} {[list] [] [projects] [] []} {[watch] [] [projects] [] []} {[create] [] [projects] [] []} {[patch] [] [resourceaccessreviews] [] []} {[update] [] [resourceaccessreviews] [] []} {[watch] [] [resourceaccessreviews] [] []} {[delete] [] [resourceaccessreviews] [] []} {[deletecollection] [] [resourceaccessreviews] [] []} {[get] [] [resourceaccessreviews] [] []} {[list] [] [resourceaccessreviews] [] []} {[deletecollection] [] [buildconfigs/instantiate] [] []} {[get] [] [buildconfigs/instantiate] [] []} {[list] [] [buildconfigs/instantiate] [] []} {[patch] [] [buildconfigs/instantiate] [] []} {[update] [] [buildconfigs/instantiate] [] []} {[watch] [] [buildconfigs/instantiate] [] []} {[delete] [] [buildconfigs/instantiate] [] []} {[patch] [] [builds/log] [] []} {[update] [] [builds/log] [] []} {[create] [] [builds/log] [] []} {[delete] [] [builds/log] [] []} {[deletecollection] [] [builds/log] [] []} {[watch] [] [imagestreamimports] [] []} {[delete] [] [imagestreamimports] [] []} {[deletecollection] [] [imagestreamimports] [] []} {[get] [] [imagestreamimports] [] []} {[list] [] [imagestreamimports] [] []} {[patch] [] [imagestreamimports] [] []} {[update] [] [imagestreamimports] [] []} {[patch] [] [builds/clone] [] []} {[update] [] [builds/clone] [] []} {[watch] [] [builds/clone] [] []} {[delete] [] [builds/clone] [] []} {[deletecollection] [] [builds/clone] [] []} {[get] [] [builds/clone] [] []} {[list] [] [builds/clone] [] []} {[watch] [] [localsubjectaccessreviews] [] []} {[delete] [] [localsubjectaccessreviews] [] []} {[deletecollection] [] [localsubjectaccessreviews] [] []} {[get] [] [localsubjectaccessreviews] [] []} {[list] [] [localsubjectaccessreviews] [] []} {[patch] [] [localsubjectaccessreviews] [] []} {[update] [] [localsubjectaccessreviews] [] []} {[get] [] [securitycontextconstraints] [] []} {[list] [] [securitycontextconstraints] [] []} {[watch] [] [securitycontextconstraints] [] []} {[get] [] [minions] [] []} {[list] [] [minions] [] []} {[watch] [] [minions] [] []} {[get] [] [nodes] [] []} {[list] [] [nodes] [] []} {[watch] [] [nodes] [] []} {[get] [] [persistentvolumes] [] []} {[list] [] [persistentvolumes] [] []} {[watch] [] [persistentvolumes] [] []} {[create] [rbac.authorization.k8s.io] [rolebindings] [] []} {[delete] [rbac.authorization.k8s.io] [rolebindings] [] []} {[deletecollection] [rbac.authorization.k8s.io] [rolebindings] [] []} {[get] [rbac.authorization.k8s.io] [rolebindings] [] []} {[list] [rbac.authorization.k8s.io] [rolebindings] [] []} {[patch] [rbac.authorization.k8s.io] [rolebindings] [] []} {[update] [rbac.authorization.k8s.io] [rolebindings] [] []} {[watch] [rbac.authorization.k8s.io] [rolebindings] [] []} {[create] [rbac.authorization.k8s.io] [roles] [] []} {[delete] [rbac.authorization.k8s.io] [roles] [] []} {[deletecollection] [rbac.authorization.k8s.io] [roles] [] []} {[get] [rbac.authorization.k8s.io] [roles] [] []} {[list] [rbac.authorization.k8s.io] [roles] [] []} {[patch] [rbac.authorization.k8s.io] [roles] [] []} {[update] [rbac.authorization.k8s.io] [roles] [] []} {[watch] [rbac.authorization.k8s.io] [roles] [] []} {[create] [apps] [deployments/rollback] [] []} {[delete] [apps] [deployments/rollback] [] []} {[deletecollection] [apps] [deployments/rollback] [] []} {[get] [apps] [deployments/rollback] [] []} {[list] [apps] [deployments/rollback] [] []} {[patch] [apps] [deployments/rollback] [] []} {[update] [apps] [deployments/rollback] [] []} {[watch] [apps] [deployments/rollback] [] []} {[create] [apps] [replicasets] [] []} {[delete] [apps] [replicasets] [] []} {[deletecollection] [apps] [replicasets] [] []} {[get] [apps] [replicasets] [] []} {[list] [apps] [replicasets] [] []} {[patch] [apps] [replicasets] [] []} {[update] [apps] [replicasets] [] []} {[watch] [apps] [replicasets] [] []} {[create] [apps] [replicasets/scale] [] []} {[delete] [apps] [replicasets/scale] [] []} {[deletecollection] [apps] [replicasets/scale] [] []} {[get] [apps] [replicasets/scale] [] []} {[list] [apps] [replicasets/scale] [] []} {[patch] [apps] [replicasets/scale] [] []} {[update] [apps] [replicasets/scale] [] []} {[watch] [apps] [replicasets/scale] [] []} {[create] [apps] [replicationcontrollers/scale] [] []} {[delete] [apps] [replicationcontrollers/scale] [] []} {[deletecollection] [apps] [replicationcontrollers/scale] [] []} {[get] [apps] [replicationcontrollers/scale] [] []} {[list] [apps] [replicationcontrollers/scale] [] []} {[patch] [apps] [replicationcontrollers/scale] [] []} {[update] [apps] [replicationcontrollers/scale] [] []} {[watch] [apps] [replicationcontrollers/scale] [] []} {[get] [apps] [daemonsets] [] []} {[list] [apps] [daemonsets] [] []} {[watch] [apps] [daemonsets] [] []} {[create update delete get list watch patch] [servicecatalog.k8s.io] [serviceinstances servicebindings] [] []} {[create update delete get list watch] [settings.k8s.io] [podpresets] [] []}] ruleResolutionErrors=[]
    error: roles.rbac.authorization.k8s.io "syndesis-knative-reader" not found
  1. unable to create syndesis-editor role:
    error: roles.rbac.authorization.k8s.io "syndesis-editor" is forbidden: attempt to grant extra privileges: [{[create] [] [replicationcontrollers/status] [] []} {[update] [] [replicationcontrollers/status] [] []} {[delete] [] [replicationcontrollers/status] [] []} {[deletecollection] [] [replicationcontrollers/status] [] []} {[get] [] [builds/details] [] []} {[list] [] [builds/details] [] []} {[create] [] [builds/details] [] []} {[delete] [] [builds/details] [] []} {[deletecollection] [] [builds/details] [] []} {[watch] [] [builds/details] [] []} {[get] [build.openshift.io] [builds/details] [] []} {[list] [build.openshift.io] [builds/details] [] []} {[create] [build.openshift.io] [builds/details] [] []} {[delete] [build.openshift.io] [builds/details] [] []} {[deletecollection] [build.openshift.io] [builds/details] [] []} {[watch] [build.openshift.io] [builds/details] [] []} {[get] [build.openshift.io] [buildconfigs/instantiatebinary] [] []} {[list] [build.openshift.io] [buildconfigs/instantiatebinary] [] []} {[update] [build.openshift.io] [buildconfigs/instantiatebinary] [] []} {[delete] [build.openshift.io] [buildconfigs/instantiatebinary] [] []} {[deletecollection] [build.openshift.io] [buildconfigs/instantiatebinary] [] []} {[watch] [build.openshift.io] [buildconfigs/instantiatebinary] [] []} {[create] [build.openshift.io] [builds/log] [] []} {[update] [build.openshift.io] [builds/log] [] []} {[delete] [build.openshift.io] [builds/log] [] []} {[deletecollection] [build.openshift.io] [builds/log] [] []} {[get] [image.openshift.io] [imagestreamimports] [] []} {[list] [image.openshift.io] [imagestreamimports] [] []} {[watch] [image.openshift.io] [imagestreamimports] [] []}] user=&{zregvart a87c1d5b-1c39-11e7-b66a-0e6aaf341bbf [dedicated-admins syndesis system:authenticated:oauth system:authenticated] map[scopes.authorization.openshift.io:[user:full]]} ownerrules=[{[get] [user.openshift.io ] [users] [~] []} {[list] [project.openshift.io ] [projectrequests] [] []} {[get list] [authorization.openshift.io ] [clusterroles] [] []} {[get list] [storage.k8s.io] [storageclasses] [] []} {[list watch] [project.openshift.io ] [projects] [] []} {[create] [authorization.openshift.io ] [selfsubjectrulesreviews] [] []} {[create] [authorization.k8s.io] [selfsubjectaccessreviews] [] []} {[get] [rbac.authorization.k8s.io] [clusterroles] [] []} {[list] [rbac.authorization.k8s.io] [clusterroles] [] []} {[watch] [rbac.authorization.k8s.io] [clusterroles] [] []} {[get] [] [namespaces] [] []} {[get] [] [] [] [/healthz /healthz/*]} {[get] [] [] [] [/.well-known /.well-known/* /api /api/* /apis /apis/* /oapi /oapi/* /osapi /osapi/ /swagger.json /swaggerapi /swaggerapi/* /version /version/*]} {[get] [] [] [] [/]} {[get] [] [] [] [/swagger-2.0.0.pb-v1]} {[get] [] [] [] [/openapi/v2]} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [authorization.openshift.io ] [selfsubjectrulesreviews] [] []} {[create] [authorization.k8s.io] [selfsubjectaccessreviews] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [authorization.k8s.io] [selfsubjectaccessreviews] [] []} {[create] [authorization.k8s.io] [selfsubjectrulesreviews] [] []} {[create] [build.openshift.io ] [builds/custom] [] []} {[create] [build.openshift.io ] [builds/docker builds/optimizeddocker] [] []} {[create] [build.openshift.io ] [builds/jenkinspipeline] [] []} {[create] [build.openshift.io ] [builds/source] [] []} {[get] [] [] [] [/.well-known /.well-known/* /api /api/* /apis /apis/* /oapi /oapi/* /osapi /osapi/ /swagger.json /swaggerapi /swaggerapi/* /version /version/*]} {[get] [] [] [] [/]} {[get] [] [] [] [/swagger-2.0.0.pb-v1]} {[get] [] [] [] [/openapi/v2]} {[get] [] [] [] [/healthz]} {[get] [] [] [] [/openapi]} {[get] [] [] [] [/openapi/*]} {[get] [] [] [] [/.well-known /.well-known/* /api /api/* /apis /apis/* /oapi /oapi/* /osapi /osapi/ /swagger.json /swaggerapi /swaggerapi/* /version /version/*]} {[get] [] [] [] [/]} {[get] [] [] [] [/swagger-2.0.0.pb-v1]} {[get] [] [] [] [/openapi/v2]} {[get] [] [] [] [/healthz]} {[get] [] [] [] [/openapi]} {[get] [] [] [] [/openapi/*]} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[delete] [oauth.openshift.io ] [oauthaccesstokens oauthauthorizetokens] [] []} {[get] [] [] [] [/version /version/* /api /api/* /apis /apis/* /oapi /oapi/* /openapi/v2 /swaggerapi /swaggerapi/* /swagger.json /swagger-2.0.0.pb-v1 /osapi /osapi/ /.well-known /.well-known/* /]} {[impersonate] [authentication.k8s.io] [userextras/scopes.authorization.openshift.io] [] []} {[create get] [build.openshift.io ] [buildconfigs/webhooks] [] []} {[*] [camel.apache.org] [*] [] []} {[create delete deletecollection get list patch update watch] [] [pods pods/attach pods/exec pods/portforward pods/proxy] [] []} {[create delete deletecollection get list patch update watch] [] [configmaps endpoints persistentvolumeclaims replicationcontrollers replicationcontrollers/scale secrets serviceaccounts services services/proxy] [] []} {[get list watch] [] [bindings events limitranges namespaces/status pods/log pods/status replicationcontrollers/status resourcequotas resourcequotas/status] [] []} {[get list watch] [] [namespaces] [] []} {[impersonate] [] [serviceaccounts] [] []} {[create delete deletecollection get list patch update watch] [apps] [daemonsets deployments deployments/rollback deployments/scale replicasets replicasets/scale statefulsets] [] []} {[create delete deletecollection get list patch update watch] [autoscaling] [horizontalpodautoscalers] [] []} {[create delete deletecollection get list patch update watch] [batch] [cronjobs jobs] [] []} {[create delete deletecollection get list patch update watch] [extensions] [daemonsets deployments deployments/rollback deployments/scale ingresses replicasets replicasets/scale replicationcontrollers/scale] [] []} {[create delete deletecollection get list patch update watch] [policy] [poddisruptionbudgets] [] []} {[create] [authorization.k8s.io] [localsubjectaccessreviews] [] []} {[create delete deletecollection get list patch update watch] [rbac.authorization.k8s.io] [rolebindings roles] [] []} {[create] [apps] [statefulsets/scale] [] []} {[delete] [apps] [statefulsets/scale] [] []} {[deletecollection] [apps] [statefulsets/scale] [] []} {[get] [apps] [statefulsets/scale] [] []} {[list] [apps] [statefulsets/scale] [] []} {[patch] [apps] [statefulsets/scale] [] []} {[update] [apps] [statefulsets/scale] [] []} {[watch] [apps] [statefulsets/scale] [] []} {[create] [extensions] [networkpolicies] [] []} {[delete] [extensions] [networkpolicies] [] []} {[deletecollection] [extensions] [networkpolicies] [] []} {[get] [extensions] [networkpolicies] [] []} {[list] [extensions] [networkpolicies] [] []} {[patch] [extensions] [networkpolicies] [] []} {[update] [extensions] [networkpolicies] [] []} {[watch] [extensions] [networkpolicies] [] []} {[create] [networking.k8s.io] [networkpolicies] [] []} {[delete] [networking.k8s.io] [networkpolicies] [] []} {[deletecollection] [networking.k8s.io] [networkpolicies] [] []} {[get] [networking.k8s.io] [networkpolicies] [] []} {[list] [networking.k8s.io] [networkpolicies] [] []} {[patch] [networking.k8s.io] [networkpolicies] [] []} {[update] [networking.k8s.io] [networkpolicies] [] []} {[watch] [networking.k8s.io] [networkpolicies] [] []} {[get list watch] [] [bindings events limitranges namespaces namespaces/status pods/log pods/status replicationcontrollers/status resourcequotas resourcequotas/status] [] []} {[create delete deletecollection get list patch update watch] [batch] [cronjobs jobs scheduledjobs] [] []} {[create delete deletecollection get list patch update watch] [extensions] [deployments deployments/rollback deployments/scale horizontalpodautoscalers jobs networkpolicies replicasets replicasets/scale replicationcontrollers/scale] [] []} {[get list watch] [extensions] [daemonsets] [] []} {[create delete deletecollection get list patch update watch] [apps] [deployments deployments/scale deployments/status statefulsets] [] []} {[create delete deletecollection get list patch update watch] [authorization.openshift.io ] [rolebindings roles] [] []} {[create] [authorization.openshift.io ] [localresourceaccessreviews localsubjectaccessreviews subjectrulesreviews] [] []} {[create] [security.openshift.io ] [podsecuritypolicyreviews podsecuritypolicyselfsubjectreviews podsecuritypolicysubjectreviews] [] []} {[get list watch] [authorization.openshift.io ] [policies policybindings rolebindingrestrictions] [] []} {[create delete deletecollection get list patch update watch] [build.openshift.io ] [buildconfigs buildconfigs/webhooks builds] [] []} {[get list watch] [build.openshift.io ] [builds/log] [] []} {[create] [build.openshift.io ] [buildconfigs/instantiate buildconfigs/instantiatebinary builds/clone] [] []} {[update] [build.openshift.io ] [builds/details] [] []} {[admin edit view] [build.openshift.io] [jenkins] [] []} {[create delete deletecollection get list patch update watch] [apps.openshift.io ] [deploymentconfigs deploymentconfigs/scale generatedeploymentconfigs] [] []} {[create] [apps.openshift.io ] [deploymentconfigrollbacks deploymentconfigs/instantiate deploymentconfigs/rollback] [] []} {[get list watch] [apps.openshift.io ] [deploymentconfigs/log deploymentconfigs/status] [] []} {[create delete deletecollection get list patch update watch] [image.openshift.io ] [imagestreamimages imagestreammappings imagestreams imagestreams/secrets imagestreamtags] [] []} {[get list watch] [image.openshift.io ] [imagestreams/status] [] []} {[get update] [image.openshift.io ] [imagestreams/layers] [] []} {[create] [image.openshift.io ] [imagestreamimports] [] []} {[delete get patch update] [project.openshift.io ] [projects] [] []} {[get list watch] [quota.openshift.io ] [appliedclusterresourcequotas] [] []} {[create delete deletecollection get list patch update watch] [route.openshift.io ] [routes] [] []} {[create] [route.openshift.io ] [routes/custom-host] [] []} {[get list watch] [route.openshift.io ] [routes/status] [] []} {[update] [route.openshift.io ] [routes/status] [] []} {[create delete deletecollection get list patch update watch] [template.openshift.io ] [processedtemplates templateconfigs templateinstances templates] [] []} {[create delete deletecollection get list patch update watch] [build.openshift.io ] [buildlogs] [] []} {[get list watch] [] [resourcequotausages] [] []} {[create] [authorization.openshift.io ] [resourceaccessreviews subjectaccessreviews] [] []} {[patch] [apps] [petsets] [] []} {[update] [apps] [petsets] [] []} {[watch] [apps] [petsets] [] []} {[create] [apps] [petsets] [] []} {[delete] [apps] [petsets] [] []} {[deletecollection] [apps] [petsets] [] []} {[get] [apps] [petsets] [] []} {[list] [apps] [petsets] [] []} {[patch] [] [deploymentconfigrollbacks] [] []} {[update] [] [deploymentconfigrollbacks] [] []} {[watch] [] [deploymentconfigrollbacks] [] []} {[delete] [] [deploymentconfigrollbacks] [] []} {[deletecollection] [] [deploymentconfigrollbacks] [] []} {[get] [] [deploymentconfigrollbacks] [] []} {[list] [] [deploymentconfigrollbacks] [] []} {[list] [] [deploymentconfigs/rollback] [] []} {[patch] [] [deploymentconfigs/rollback] [] []} {[update] [] [deploymentconfigs/rollback] [] []} {[watch] [] [deploymentconfigs/rollback] [] []} {[delete] [] [deploymentconfigs/rollback] [] []} {[deletecollection] [] [deploymentconfigs/rollback] [] []} {[get] [] [deploymentconfigs/rollback] [] []} {[create] [] [pods/log] [] []} {[delete] [] [pods/log] [] []} {[deletecollection] [] [pods/log] [] []} {[patch] [] [pods/log] [] []} {[update] [] [pods/log] [] []} {[update] [] [deploymentconfigs/log] [] []} {[create] [] [deploymentconfigs/log] [] []} {[delete] [] [deploymentconfigs/log] [] []} {[deletecollection] [] [deploymentconfigs/log] [] []} {[patch] [] [deploymentconfigs/log] [] []} {[list] [] [deployments] [] []} {[patch] [] [deployments] [] []} {[update] [] [deployments] [] []} {[watch] [] [deployments] [] []} {[create] [] [deployments] [] []} {[delete] [] [deployments] [] []} {[deletecollection] [] [deployments] [] []} {[get] [] [deployments] [] []} {[list] [] [subjectaccessreviews] [] []} {[patch] [] [subjectaccessreviews] [] []} {[update] [] [subjectaccessreviews] [] []} {[watch] [] [subjectaccessreviews] [] []} {[delete] [] [subjectaccessreviews] [] []} {[deletecollection] [] [subjectaccessreviews] [] []} {[get] [] [subjectaccessreviews] [] []} {[list] [] [buildconfigs/instantiatebinary] [] []} {[patch] [] [buildconfigs/instantiatebinary] [] []} {[update] [] [buildconfigs/instantiatebinary] [] []} {[watch] [] [buildconfigs/instantiatebinary] [] []} {[delete] [] [buildconfigs/instantiatebinary] [] []} {[deletecollection] [] [buildconfigs/instantiatebinary] [] []} {[get] [] [buildconfigs/instantiatebinary] [] []} {[delete] [] [localresourceaccessreviews] [] []} {[deletecollection] [] [localresourceaccessreviews] [] []} {[get] [] [localresourceaccessreviews] [] []} {[list] [] [localresourceaccessreviews] [] []} {[patch] [] [localresourceaccessreviews] [] []} {[update] [] [localresourceaccessreviews] [] []} {[watch] [] [localresourceaccessreviews] [] []} {[deletecollection] [] [projects] [] []} {[list] [] [projects] [] []} {[watch] [] [projects] [] []} {[create] [] [projects] [] []} {[patch] [] [resourceaccessreviews] [] []} {[update] [] [resourceaccessreviews] [] []} {[watch] [] [resourceaccessreviews] [] []} {[delete] [] [resourceaccessreviews] [] []} {[deletecollection] [] [resourceaccessreviews] [] []} {[get] [] [resourceaccessreviews] [] []} {[list] [] [resourceaccessreviews] [] []} {[deletecollection] [] [buildconfigs/instantiate] [] []} {[get] [] [buildconfigs/instantiate] [] []} {[list] [] [buildconfigs/instantiate] [] []} {[patch] [] [buildconfigs/instantiate] [] []} {[update] [] [buildconfigs/instantiate] [] []} {[watch] [] [buildconfigs/instantiate] [] []} {[delete] [] [buildconfigs/instantiate] [] []} {[patch] [] [builds/log] [] []} {[update] [] [builds/log] [] []} {[create] [] [builds/log] [] []} {[delete] [] [builds/log] [] []} {[deletecollection] [] [builds/log] [] []} {[watch] [] [imagestreamimports] [] []} {[delete] [] [imagestreamimports] [] []} {[deletecollection] [] [imagestreamimports] [] []} {[get] [] [imagestreamimports] [] []} {[list] [] [imagestreamimports] [] []} {[patch] [] [imagestreamimports] [] []} {[update] [] [imagestreamimports] [] []} {[patch] [] [builds/clone] [] []} {[update] [] [builds/clone] [] []} {[watch] [] [builds/clone] [] []} {[delete] [] [builds/clone] [] []} {[deletecollection] [] [builds/clone] [] []} {[get] [] [builds/clone] [] []} {[list] [] [builds/clone] [] []} {[watch] [] [localsubjectaccessreviews] [] []} {[delete] [] [localsubjectaccessreviews] [] []} {[deletecollection] [] [localsubjectaccessreviews] [] []} {[get] [] [localsubjectaccessreviews] [] []} {[list] [] [localsubjectaccessreviews] [] []} {[patch] [] [localsubjectaccessreviews] [] []} {[update] [] [localsubjectaccessreviews] [] []} {[get] [] [securitycontextconstraints] [] []} {[list] [] [securitycontextconstraints] [] []} {[watch] [] [securitycontextconstraints] [] []} {[get] [] [minions] [] []} {[list] [] [minions] [] []} {[watch] [] [minions] [] []} {[get] [] [nodes] [] []} {[list] [] [nodes] [] []} {[watch] [] [nodes] [] []} {[get] [] [persistentvolumes] [] []} {[list] [] [persistentvolumes] [] []} {[watch] [] [persistentvolumes] [] []} {[create] [rbac.authorization.k8s.io] [rolebindings] [] []} {[delete] [rbac.authorization.k8s.io] [rolebindings] [] []} {[deletecollection] [rbac.authorization.k8s.io] [rolebindings] [] []} {[get] [rbac.authorization.k8s.io] [rolebindings] [] []} {[list] [rbac.authorization.k8s.io] [rolebindings] [] []} {[patch] [rbac.authorization.k8s.io] [rolebindings] [] []} {[update] [rbac.authorization.k8s.io] [rolebindings] [] []} {[watch] [rbac.authorization.k8s.io] [rolebindings] [] []} {[create] [rbac.authorization.k8s.io] [roles] [] []} {[delete] [rbac.authorization.k8s.io] [roles] [] []} {[deletecollection] [rbac.authorization.k8s.io] [roles] [] []} {[get] [rbac.authorization.k8s.io] [roles] [] []} {[list] [rbac.authorization.k8s.io] [roles] [] []} {[patch] [rbac.authorization.k8s.io] [roles] [] []} {[update] [rbac.authorization.k8s.io] [roles] [] []} {[watch] [rbac.authorization.k8s.io] [roles] [] []} {[create] [apps] [deployments/rollback] [] []} {[delete] [apps] [deployments/rollback] [] []} {[deletecollection] [apps] [deployments/rollback] [] []} {[get] [apps] [deployments/rollback] [] []} {[list] [apps] [deployments/rollback] [] []} {[patch] [apps] [deployments/rollback] [] []} {[update] [apps] [deployments/rollback] [] []} {[watch] [apps] [deployments/rollback] [] []} {[create] [apps] [replicasets] [] []} {[delete] [apps] [replicasets] [] []} {[deletecollection] [apps] [replicasets] [] []} {[get] [apps] [replicasets] [] []} {[list] [apps] [replicasets] [] []} {[patch] [apps] [replicasets] [] []} {[update] [apps] [replicasets] [] []} {[watch] [apps] [replicasets] [] []} {[create] [apps] [replicasets/scale] [] []} {[delete] [apps] [replicasets/scale] [] []} {[deletecollection] [apps] [replicasets/scale] [] []} {[get] [apps] [replicasets/scale] [] []} {[list] [apps] [replicasets/scale] [] []} {[patch] [apps] [replicasets/scale] [] []} {[update] [apps] [replicasets/scale] [] []} {[watch] [apps] [replicasets/scale] [] []} {[create] [apps] [replicationcontrollers/scale] [] []} {[delete] [apps] [replicationcontrollers/scale] [] []} {[deletecollection] [apps] [replicationcontrollers/scale] [] []} {[get] [apps] [replicationcontrollers/scale] [] []} {[list] [apps] [replicationcontrollers/scale] [] []} {[patch] [apps] [replicationcontrollers/scale] [] []} {[update] [apps] [replicationcontrollers/scale] [] []} {[watch] [apps] [replicationcontrollers/scale] [] []} {[get] [apps] [daemonsets] [] []} {[list] [apps] [daemonsets] [] []} {[watch] [apps] [daemonsets] [] []} {[create update delete get list watch patch] [servicecatalog.k8s.io] [serviceinstances servicebindings] [] []} {[create update delete get list watch] [settings.k8s.io] [podpresets] [] []}] ruleResolutionErrors=[]
    error: roles.rbac.authorization.k8s.io "syndesis-editor" not found
  1. This leads to inability to publish integrations (the status remains Assembling) due to:
2019-07-02 07:09:55.006  INFO [-,,,] 1 --- [tion Controller] i.s.s.c.i.online.PublishHandler          : Integration [logger]: Created project files and starting build
2019-07-02 07:09:55.908 ERROR [-,,,] 1 --- [tion Controller] i.s.s.c.i.online.PublishHandler          : Integration [logger]: [ERROR] Activation failure

io.fabric8.kubernetes.client.KubernetesClientException: Failure executing: POST at: https://kubernetes.default.svc/apis/image.openshift.io/v1/namespaces/syndesis-test/imagestreams. Message: Forbidden!Configured service account doesn't have access. Service account may have been revoked. imagestreams.image.openshift.io is forbidden: User "system:serviceaccount:syndesis-test:syndesis-server" cannot create imagestreams.image.openshift.io in the namespace "syndesis-test": no RBAC policy matched.
	at io.fabric8.kubernetes.client.dsl.base.OperationSupport.requestFailure(OperationSupport.java:472) ~[kubernetes-client-3.1.12.fuse-730022.jar!/:na]
	at io.fabric8.kubernetes.client.dsl.base.OperationSupport.assertResponseCode(OperationSupport.java:409) ~[kubernetes-client-3.1.12.fuse-730022.jar!/:na]
	at io.fabric8.kubernetes.client.dsl.base.OperationSupport.handleResponse(OperationSupport.java:381) ~[kubernetes-client-3.1.12.fuse-730022.jar!/:na]
	at io.fabric8.kubernetes.client.dsl.base.OperationSupport.handleResponse(OperationSupport.java:344) ~[kubernetes-client-3.1.12.fuse-730022.jar!/:na]
	at io.fabric8.kubernetes.client.dsl.base.OperationSupport.handleCreate(OperationSupport.java:227) ~[kubernetes-client-3.1.12.fuse-730022.jar!/:na]
	at io.fabric8.kubernetes.client.dsl.base.BaseOperation.handleCreate(BaseOperation.java:766) ~[kubernetes-client-3.1.12.fuse-730022.jar!/:na]
	at io.fabric8.kubernetes.client.dsl.base.BaseOperation.create(BaseOperation.java:335) ~[kubernetes-client-3.1.12.fuse-730022.jar!/:na]
	at io.fabric8.kubernetes.client.dsl.base.BaseOperation.createOrReplace(BaseOperation.java:404) ~[kubernetes-client-3.1.12.fuse-730022.jar!/:na]
	at io.fabric8.kubernetes.client.dsl.base.BaseOperation$2.apply(BaseOperation.java:373) ~[kubernetes-client-3.1.12.fuse-730022.jar!/:na]
	at io.fabric8.openshift.api.model.DoneableImageStream.done(DoneableImageStream.java:27) ~[kubernetes-model-2.0.10.jar!/:2.0.10]
	at io.syndesis.server.openshift.OpenShiftServiceImpl.ensureImageStreams(OpenShiftServiceImpl.java:213) ~[server-openshift-1.7.8.jar!/:1.7.8]
	at io.syndesis.server.openshift.OpenShiftServiceImpl.build(OpenShiftServiceImpl.java:80) ~[server-openshift-1.7.8.jar!/:1.7.8]
	at io.syndesis.server.controller.integration.online.PublishHandler.build(PublishHandler.java:173) ~[server-controller-1.7.8.jar!/:1.7.8]
	at io.syndesis.server.controller.integration.online.PublishHandler$BuildStepOncePerformer.perform(PublishHandler.java:284) ~[server-controller-1.7.8.jar!/:1.7.8]
	at io.syndesis.server.controller.integration.online.PublishHandler.execute(PublishHandler.java:101) ~[server-controller-1.7.8.jar!/:1.7.8]
	at io.syndesis.server.controller.StateChangeHandler.execute(StateChangeHandler.java:33) [server-controller-1.7.8.jar!/:1.7.8]
	at io.syndesis.server.controller.integration.BaseIntegrationController.lambda$callStateChangeHandler$10(BaseIntegrationController.java:220) [server-controller-1.7.8.jar!/:1.7.8]
	at java.util.concurrent.ThreadPoolExecutor.runWorker(ThreadPoolExecutor.java:1149) ~[na:1.8.0_151]
	at java.util.concurrent.ThreadPoolExecutor$Worker.run(ThreadPoolExecutor.java:624) ~[na:1.8.0_151]
	at java.lang.Thread.run(Thread.java:748) ~[na:1.8.0_151]

Can you help with this one @lgarciaaco?

Issue Analytics

  • State:closed
  • Created 4 years ago
  • Comments:20 (10 by maintainers)

github_iconTop GitHub Comments

1reaction
heiko-brauncommented, Jul 2, 2019

@lgarciaaco Is on PTO, but I think @nicolaferraro might be able to help

0reactions
nicolaferrarocommented, Jul 3, 2019

Yeah, I should know the source. He was adding explicit permissions from edit account manually to the syndesis role, because it’s not possible to add a predefined account to operator hub. It’s possible that the edit account changed in ocp4 and this needs to be fixed to match the exact ocp3 role. I’ll do it later when I can reconnect back. That should be easy, e.g. we probably don’t need explicit authorizations on replication controllers.

Read more comments on GitHub >

github_iconTop Results From Across the Web

Permission issues when installing applications or games, after
Case in point, I am trying to install iTunes and part way through the installation the install stops and throws up an error...
Read more >
Resolving Permission Issues When Installing Software in ...
Resolving Permission Issues When Installing Software in Windows 10.Windows 10 And 8.1 Change System Files And Folder User Permissions (ACL).
Read more >
Troubleshoot Permission Issues - Bitnami Documentation
A permission issue occurs when an application (or system user) is performing an unauthorized operation in the filesystem.
Read more >
Permission denied when trying to transfer template installer to ...
Run from Dom0. Expected behavior: Transfer the template to dom0. Actual behavior: bash: install-templates.sh: permission denied ...
Read more >
Resolving EACCES permissions errors when installing ...
This is the best way to avoid permissions issues. To reinstall npm with a node version manager, follow the steps in "Downloading and...
Read more >

github_iconTop Related Medium Post

No results found

github_iconTop Related StackOverflow Question

No results found

github_iconTroubleshoot Live Code

Lightrun enables developers to add logs, metrics and snapshots to live code - no restarts or redeploys required.
Start Free

github_iconTop Related Reddit Thread

No results found

github_iconTop Related Hackernoon Post

No results found

github_iconTop Related Tweet

No results found

github_iconTop Related Dev.to Post

No results found

github_iconTop Related Hashnode Post

No results found