syndesis: Permission issues when installing from the template
This is a…
[ ] Feature request
[x] Regression (a behavior that used to work and stopped working in a new release)
[x] Bug report
[ ] Documentation issue or request
Description
When installing from template via install-syndesis --legacy --tag 1.7.8 --project syndesis-test
on our staging cluster there are permission issues:
- unable to create
syndesis-knative-reader
role and the role binding (as the role hasn’t been created):
error: roles.rbac.authorization.k8s.io "syndesis-knative-reader" is forbidden: attempt to grant extra privileges: [{[get] [serving.knative.dev] [services] [] []} {[list] [serving.knative.dev] [services] [] []} {[watch] [serving.knative.dev] [services] [] []} {[get] [eventing.knative.dev] [channels] [] []} {[list] [eventing.knative.dev] [channels] [] []} {[watch] [eventing.knative.dev] [channels] [] []}] user=&{zregvart a87c1d5b-1c39-11e7-b66a-0e6aaf341bbf [dedicated-admins syndesis system:authenticated:oauth system:authenticated] map[scopes.authorization.openshift.io:[user:full]]} ownerrules=[{[get] [user.openshift.io ] [users] [~] []} {[list] [project.openshift.io ] [projectrequests] [] []} {[get list] [authorization.openshift.io ] [clusterroles] [] []} {[get list] [storage.k8s.io] [storageclasses] [] []} {[list watch] [project.openshift.io ] [projects] [] []} {[create] [authorization.openshift.io ] [selfsubjectrulesreviews] [] []} {[create] [authorization.k8s.io] [selfsubjectaccessreviews] [] []} {[get] [rbac.authorization.k8s.io] [clusterroles] [] []} {[list] [rbac.authorization.k8s.io] [clusterroles] [] []} {[watch] [rbac.authorization.k8s.io] [clusterroles] [] []} {[get] [] [namespaces] [] []} {[get] [] [] [] [/healthz /healthz/*]} {[get] [] [] [] [/.well-known /.well-known/* /api /api/* /apis /apis/* /oapi /oapi/* /osapi /osapi/ /swagger.json /swaggerapi /swaggerapi/* /version /version/*]} {[get] [] [] [] [/]} {[get] [] [] [] [/swagger-2.0.0.pb-v1]} {[get] [] [] [] [/openapi/v2]} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [authorization.openshift.io ] [selfsubjectrulesreviews] [] []} {[create] [authorization.k8s.io] [selfsubjectaccessreviews] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [authorization.k8s.io] [selfsubjectaccessreviews] [] []} {[create] [authorization.k8s.io] [selfsubjectrulesreviews] [] []} {[create] [build.openshift.io ] [builds/custom] [] []} {[create] [build.openshift.io ] [builds/docker builds/optimizeddocker] [] []} {[create] [build.openshift.io ] [builds/jenkinspipeline] [] []} {[create] [build.openshift.io ] [builds/source] [] []} {[get] [] [] [] [/.well-known /.well-known/* /api /api/* /apis /apis/* /oapi /oapi/* /osapi /osapi/ /swagger.json /swaggerapi /swaggerapi/* /version /version/*]} {[get] [] [] [] [/]} {[get] [] [] [] [/swagger-2.0.0.pb-v1]} {[get] [] [] [] [/openapi/v2]} {[get] [] [] [] [/healthz]} {[get] [] [] [] [/openapi]} {[get] [] [] [] [/openapi/*]} {[get] [] [] [] [/.well-known /.well-known/* /api /api/* /apis /apis/* /oapi /oapi/* /osapi /osapi/ /swagger.json /swaggerapi /swaggerapi/* /version /version/*]} {[get] [] [] [] [/]} {[get] [] [] [] [/swagger-2.0.0.pb-v1]} {[get] [] [] [] [/openapi/v2]} {[get] [] [] [] [/healthz]} {[get] [] [] [] [/openapi]} {[get] [] [] [] [/openapi/*]} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[delete] [oauth.openshift.io ] [oauthaccesstokens oauthauthorizetokens] [] []} {[get] [] [] [] [/version /version/* /api /api/* /apis /apis/* /oapi /oapi/* /openapi/v2 /swaggerapi /swaggerapi/* /swagger.json /swagger-2.0.0.pb-v1 /osapi /osapi/ /.well-known /.well-known/* /]} {[impersonate] [authentication.k8s.io] [userextras/scopes.authorization.openshift.io] [] []} {[create get] [build.openshift.io ] [buildconfigs/webhooks] [] []} {[*] [camel.apache.org] [*] [] []} {[create delete deletecollection get list patch update watch] [] [pods pods/attach pods/exec pods/portforward pods/proxy] [] []} {[create delete deletecollection get list patch update watch] [] [configmaps endpoints persistentvolumeclaims replicationcontrollers replicationcontrollers/scale secrets serviceaccounts services services/proxy] [] []} {[get list watch] [] [bindings events limitranges namespaces/status pods/log pods/status replicationcontrollers/status resourcequotas resourcequotas/status] [] []} {[get list watch] [] [namespaces] [] []} {[impersonate] [] [serviceaccounts] [] []} {[create delete deletecollection get list patch update watch] [apps] [daemonsets deployments deployments/rollback deployments/scale replicasets replicasets/scale statefulsets] [] []} {[create delete deletecollection get list patch update watch] [autoscaling] [horizontalpodautoscalers] [] []} {[create delete deletecollection get list patch update watch] [batch] [cronjobs jobs] [] []} {[create delete deletecollection get list patch update watch] [extensions] [daemonsets deployments deployments/rollback deployments/scale ingresses replicasets replicasets/scale replicationcontrollers/scale] [] []} {[create delete deletecollection get list patch update watch] [policy] [poddisruptionbudgets] [] []} {[create] [authorization.k8s.io] [localsubjectaccessreviews] [] []} {[create delete deletecollection get list patch update watch] [rbac.authorization.k8s.io] [rolebindings roles] [] []} {[create] [apps] [statefulsets/scale] [] []} {[delete] [apps] [statefulsets/scale] [] []} {[deletecollection] [apps] [statefulsets/scale] [] []} {[get] [apps] [statefulsets/scale] [] []} {[list] [apps] [statefulsets/scale] [] []} {[patch] [apps] [statefulsets/scale] [] []} {[update] [apps] [statefulsets/scale] [] []} {[watch] [apps] [statefulsets/scale] [] []} {[create] [extensions] [networkpolicies] [] []} {[delete] [extensions] [networkpolicies] [] []} {[deletecollection] [extensions] [networkpolicies] [] []} {[get] [extensions] [networkpolicies] [] []} {[list] [extensions] [networkpolicies] [] []} {[patch] [extensions] [networkpolicies] [] []} {[update] [extensions] [networkpolicies] [] []} {[watch] [extensions] [networkpolicies] [] []} {[create] [networking.k8s.io] [networkpolicies] [] []} {[delete] [networking.k8s.io] [networkpolicies] [] []} {[deletecollection] [networking.k8s.io] [networkpolicies] [] []} {[get] [networking.k8s.io] [networkpolicies] [] []} {[list] [networking.k8s.io] [networkpolicies] [] []} {[patch] [networking.k8s.io] [networkpolicies] [] []} {[update] [networking.k8s.io] [networkpolicies] [] []} {[watch] [networking.k8s.io] [networkpolicies] [] []} {[get list watch] [] [bindings events limitranges namespaces namespaces/status pods/log pods/status replicationcontrollers/status resourcequotas resourcequotas/status] [] []} {[create delete deletecollection get list patch update watch] [batch] [cronjobs jobs scheduledjobs] [] []} {[create delete deletecollection get list patch update watch] [extensions] [deployments deployments/rollback deployments/scale horizontalpodautoscalers jobs networkpolicies replicasets replicasets/scale replicationcontrollers/scale] [] []} {[get list watch] [extensions] [daemonsets] [] []} {[create delete deletecollection get list patch update watch] [apps] [deployments deployments/scale deployments/status statefulsets] [] []} {[create delete deletecollection get list patch update watch] [authorization.openshift.io ] [rolebindings roles] [] []} {[create] [authorization.openshift.io ] [localresourceaccessreviews localsubjectaccessreviews subjectrulesreviews] [] []} {[create] [security.openshift.io ] [podsecuritypolicyreviews podsecuritypolicyselfsubjectreviews podsecuritypolicysubjectreviews] [] []} {[get list watch] [authorization.openshift.io ] [policies policybindings rolebindingrestrictions] [] []} {[create delete deletecollection get list patch update watch] [build.openshift.io ] [buildconfigs buildconfigs/webhooks builds] [] []} {[get list watch] [build.openshift.io ] [builds/log] [] []} {[create] [build.openshift.io ] [buildconfigs/instantiate buildconfigs/instantiatebinary builds/clone] [] []} {[update] [build.openshift.io ] [builds/details] [] []} {[admin edit view] [build.openshift.io] [jenkins] [] []} {[create delete deletecollection get list patch update watch] [apps.openshift.io ] [deploymentconfigs deploymentconfigs/scale generatedeploymentconfigs] [] []} {[create] [apps.openshift.io ] [deploymentconfigrollbacks deploymentconfigs/instantiate deploymentconfigs/rollback] [] []} {[get list watch] [apps.openshift.io ] [deploymentconfigs/log deploymentconfigs/status] [] []} {[create delete deletecollection get list patch update watch] [image.openshift.io ] [imagestreamimages imagestreammappings imagestreams imagestreams/secrets imagestreamtags] [] []} {[get list watch] [image.openshift.io ] [imagestreams/status] [] []} {[get update] [image.openshift.io ] [imagestreams/layers] [] []} {[create] [image.openshift.io ] [imagestreamimports] [] []} {[delete get patch update] [project.openshift.io ] [projects] [] []} {[get list watch] [quota.openshift.io ] [appliedclusterresourcequotas] [] []} {[create delete deletecollection get list patch update watch] [route.openshift.io ] [routes] [] []} {[create] [route.openshift.io ] [routes/custom-host] [] []} {[get list watch] [route.openshift.io ] [routes/status] [] []} {[update] [route.openshift.io ] [routes/status] [] []} {[create delete deletecollection get list patch update watch] [template.openshift.io ] [processedtemplates templateconfigs templateinstances templates] [] []} {[create delete deletecollection get list patch update watch] [build.openshift.io ] [buildlogs] [] []} {[get list watch] [] [resourcequotausages] [] []} {[create] [authorization.openshift.io ] [resourceaccessreviews subjectaccessreviews] [] []} {[patch] [apps] [petsets] [] []} {[update] [apps] [petsets] [] []} {[watch] [apps] [petsets] [] []} {[create] [apps] [petsets] [] []} {[delete] [apps] [petsets] [] []} {[deletecollection] [apps] [petsets] [] []} {[get] [apps] [petsets] [] []} {[list] [apps] [petsets] [] []} {[patch] [] [deploymentconfigrollbacks] [] []} {[update] [] [deploymentconfigrollbacks] [] []} {[watch] [] [deploymentconfigrollbacks] [] []} {[delete] [] [deploymentconfigrollbacks] [] []} {[deletecollection] [] [deploymentconfigrollbacks] [] []} {[get] [] [deploymentconfigrollbacks] [] []} {[list] [] [deploymentconfigrollbacks] [] []} {[list] [] [deploymentconfigs/rollback] [] []} {[patch] [] [deploymentconfigs/rollback] [] []} {[update] [] [deploymentconfigs/rollback] [] []} {[watch] [] [deploymentconfigs/rollback] [] []} {[delete] [] [deploymentconfigs/rollback] [] []} {[deletecollection] [] [deploymentconfigs/rollback] [] []} {[get] [] [deploymentconfigs/rollback] [] []} {[create] [] [pods/log] [] []} {[delete] [] [pods/log] [] []} {[deletecollection] [] [pods/log] [] []} {[patch] [] [pods/log] [] []} {[update] [] [pods/log] [] []} {[update] [] [deploymentconfigs/log] [] []} {[create] [] [deploymentconfigs/log] [] []} {[delete] [] [deploymentconfigs/log] [] []} {[deletecollection] [] [deploymentconfigs/log] [] []} {[patch] [] [deploymentconfigs/log] [] []} {[list] [] [deployments] [] []} {[patch] [] [deployments] [] []} {[update] [] [deployments] [] []} {[watch] [] [deployments] [] []} {[create] [] [deployments] [] []} {[delete] [] [deployments] [] []} {[deletecollection] [] [deployments] [] []} {[get] [] [deployments] [] []} {[list] [] [subjectaccessreviews] [] []} {[patch] [] [subjectaccessreviews] [] []} {[update] [] [subjectaccessreviews] [] []} {[watch] [] [subjectaccessreviews] [] []} {[delete] [] [subjectaccessreviews] [] []} {[deletecollection] [] [subjectaccessreviews] [] []} {[get] [] [subjectaccessreviews] [] []} {[list] [] [buildconfigs/instantiatebinary] [] []} {[patch] [] [buildconfigs/instantiatebinary] [] []} {[update] [] [buildconfigs/instantiatebinary] [] []} {[watch] [] [buildconfigs/instantiatebinary] [] []} {[delete] [] [buildconfigs/instantiatebinary] [] []} {[deletecollection] [] [buildconfigs/instantiatebinary] [] []} {[get] [] [buildconfigs/instantiatebinary] [] []} {[delete] [] [localresourceaccessreviews] [] []} {[deletecollection] [] [localresourceaccessreviews] [] []} {[get] [] [localresourceaccessreviews] [] []} {[list] [] [localresourceaccessreviews] [] []} {[patch] [] [localresourceaccessreviews] [] []} {[update] [] [localresourceaccessreviews] [] []} {[watch] [] [localresourceaccessreviews] [] []} {[deletecollection] [] [projects] [] []} {[list] [] [projects] [] []} {[watch] [] [projects] [] []} {[create] [] [projects] [] []} {[patch] [] [resourceaccessreviews] [] []} {[update] [] [resourceaccessreviews] [] []} {[watch] [] [resourceaccessreviews] [] []} {[delete] [] [resourceaccessreviews] [] []} {[deletecollection] [] [resourceaccessreviews] [] []} {[get] [] [resourceaccessreviews] [] []} {[list] [] [resourceaccessreviews] [] []} {[deletecollection] [] [buildconfigs/instantiate] [] []} {[get] [] [buildconfigs/instantiate] [] []} {[list] [] [buildconfigs/instantiate] [] []} {[patch] [] [buildconfigs/instantiate] [] []} {[update] [] [buildconfigs/instantiate] [] []} {[watch] [] [buildconfigs/instantiate] [] []} {[delete] [] [buildconfigs/instantiate] [] []} {[patch] [] [builds/log] [] []} {[update] [] [builds/log] [] []} {[create] [] [builds/log] [] []} {[delete] [] [builds/log] [] []} {[deletecollection] [] [builds/log] [] []} {[watch] [] [imagestreamimports] [] []} {[delete] [] [imagestreamimports] [] []} {[deletecollection] [] [imagestreamimports] [] []} {[get] [] [imagestreamimports] [] []} {[list] [] [imagestreamimports] [] []} {[patch] [] [imagestreamimports] [] []} {[update] [] [imagestreamimports] [] []} {[patch] [] [builds/clone] [] []} {[update] [] [builds/clone] [] []} {[watch] [] [builds/clone] [] []} {[delete] [] [builds/clone] [] []} {[deletecollection] [] [builds/clone] [] []} {[get] [] [builds/clone] [] []} {[list] [] [builds/clone] [] []} {[watch] [] [localsubjectaccessreviews] [] []} {[delete] [] [localsubjectaccessreviews] [] []} {[deletecollection] [] [localsubjectaccessreviews] [] []} {[get] [] [localsubjectaccessreviews] [] []} {[list] [] [localsubjectaccessreviews] [] []} {[patch] [] [localsubjectaccessreviews] [] []} {[update] [] [localsubjectaccessreviews] [] []} {[get] [] [securitycontextconstraints] [] []} {[list] [] [securitycontextconstraints] [] []} {[watch] [] [securitycontextconstraints] [] []} {[get] [] [minions] [] []} {[list] [] [minions] [] []} {[watch] [] [minions] [] []} {[get] [] [nodes] [] []} {[list] [] [nodes] [] []} {[watch] [] [nodes] [] []} {[get] [] [persistentvolumes] [] []} {[list] [] [persistentvolumes] [] []} {[watch] [] [persistentvolumes] [] []} {[create] [rbac.authorization.k8s.io] [rolebindings] [] []} {[delete] [rbac.authorization.k8s.io] [rolebindings] [] []} {[deletecollection] [rbac.authorization.k8s.io] [rolebindings] [] []} {[get] [rbac.authorization.k8s.io] [rolebindings] [] []} {[list] [rbac.authorization.k8s.io] [rolebindings] [] []} {[patch] [rbac.authorization.k8s.io] [rolebindings] [] []} {[update] [rbac.authorization.k8s.io] [rolebindings] [] []} {[watch] [rbac.authorization.k8s.io] [rolebindings] [] []} {[create] [rbac.authorization.k8s.io] [roles] [] []} {[delete] [rbac.authorization.k8s.io] [roles] [] []} {[deletecollection] [rbac.authorization.k8s.io] [roles] [] []} {[get] [rbac.authorization.k8s.io] [roles] [] []} {[list] [rbac.authorization.k8s.io] [roles] [] []} {[patch] [rbac.authorization.k8s.io] [roles] [] []} {[update] [rbac.authorization.k8s.io] [roles] [] []} {[watch] [rbac.authorization.k8s.io] [roles] [] []} {[create] [apps] [deployments/rollback] [] []} {[delete] [apps] [deployments/rollback] [] []} {[deletecollection] [apps] [deployments/rollback] [] []} {[get] [apps] [deployments/rollback] [] []} {[list] [apps] [deployments/rollback] [] []} {[patch] [apps] [deployments/rollback] [] []} {[update] [apps] [deployments/rollback] [] []} {[watch] [apps] [deployments/rollback] [] []} {[create] [apps] [replicasets] [] []} {[delete] [apps] [replicasets] [] []} {[deletecollection] [apps] [replicasets] [] []} {[get] [apps] [replicasets] [] []} {[list] [apps] [replicasets] [] []} {[patch] [apps] [replicasets] [] []} {[update] [apps] [replicasets] [] []} {[watch] [apps] [replicasets] [] []} {[create] [apps] [replicasets/scale] [] []} {[delete] [apps] [replicasets/scale] [] []} {[deletecollection] [apps] [replicasets/scale] [] []} {[get] [apps] [replicasets/scale] [] []} {[list] [apps] [replicasets/scale] [] []} {[patch] [apps] [replicasets/scale] [] []} {[update] [apps] [replicasets/scale] [] []} {[watch] [apps] [replicasets/scale] [] []} {[create] [apps] [replicationcontrollers/scale] [] []} {[delete] [apps] [replicationcontrollers/scale] [] []} {[deletecollection] [apps] [replicationcontrollers/scale] [] []} {[get] [apps] [replicationcontrollers/scale] [] []} {[list] [apps] [replicationcontrollers/scale] [] []} {[patch] [apps] [replicationcontrollers/scale] [] []} {[update] [apps] [replicationcontrollers/scale] [] []} {[watch] [apps] [replicationcontrollers/scale] [] []} {[get] [apps] [daemonsets] [] []} {[list] [apps] [daemonsets] [] []} {[watch] [apps] [daemonsets] [] []} {[create update delete get list watch patch] [servicecatalog.k8s.io] [serviceinstances servicebindings] [] []} {[create update delete get list watch] [settings.k8s.io] [podpresets] [] []}] ruleResolutionErrors=[]
error: roles.rbac.authorization.k8s.io "syndesis-knative-reader" not found
- unable to create
syndesis-editor
role:
error: roles.rbac.authorization.k8s.io "syndesis-editor" is forbidden: attempt to grant extra privileges: [{[create] [] [replicationcontrollers/status] [] []} {[update] [] [replicationcontrollers/status] [] []} {[delete] [] [replicationcontrollers/status] [] []} {[deletecollection] [] [replicationcontrollers/status] [] []} {[get] [] [builds/details] [] []} {[list] [] [builds/details] [] []} {[create] [] [builds/details] [] []} {[delete] [] [builds/details] [] []} {[deletecollection] [] [builds/details] [] []} {[watch] [] [builds/details] [] []} {[get] [build.openshift.io] [builds/details] [] []} {[list] [build.openshift.io] [builds/details] [] []} {[create] [build.openshift.io] [builds/details] [] []} {[delete] [build.openshift.io] [builds/details] [] []} {[deletecollection] [build.openshift.io] [builds/details] [] []} {[watch] [build.openshift.io] [builds/details] [] []} {[get] [build.openshift.io] [buildconfigs/instantiatebinary] [] []} {[list] [build.openshift.io] [buildconfigs/instantiatebinary] [] []} {[update] [build.openshift.io] [buildconfigs/instantiatebinary] [] []} {[delete] [build.openshift.io] [buildconfigs/instantiatebinary] [] []} {[deletecollection] [build.openshift.io] [buildconfigs/instantiatebinary] [] []} {[watch] [build.openshift.io] [buildconfigs/instantiatebinary] [] []} {[create] [build.openshift.io] [builds/log] [] []} {[update] [build.openshift.io] [builds/log] [] []} {[delete] [build.openshift.io] [builds/log] [] []} {[deletecollection] [build.openshift.io] [builds/log] [] []} {[get] [image.openshift.io] [imagestreamimports] [] []} {[list] [image.openshift.io] [imagestreamimports] [] []} {[watch] [image.openshift.io] [imagestreamimports] [] []}] user=&{zregvart a87c1d5b-1c39-11e7-b66a-0e6aaf341bbf [dedicated-admins syndesis system:authenticated:oauth system:authenticated] map[scopes.authorization.openshift.io:[user:full]]} ownerrules=[{[get] [user.openshift.io ] [users] [~] []} {[list] [project.openshift.io ] [projectrequests] [] []} {[get list] [authorization.openshift.io ] [clusterroles] [] []} {[get list] [storage.k8s.io] [storageclasses] [] []} {[list watch] [project.openshift.io ] [projects] [] []} {[create] [authorization.openshift.io ] [selfsubjectrulesreviews] [] []} {[create] [authorization.k8s.io] [selfsubjectaccessreviews] [] []} {[get] [rbac.authorization.k8s.io] [clusterroles] [] []} {[list] [rbac.authorization.k8s.io] [clusterroles] [] []} {[watch] [rbac.authorization.k8s.io] [clusterroles] [] []} {[get] [] [namespaces] [] []} {[get] [] [] [] [/healthz /healthz/*]} {[get] [] [] [] [/.well-known /.well-known/* /api /api/* /apis /apis/* /oapi /oapi/* /osapi /osapi/ /swagger.json /swaggerapi /swaggerapi/* /version /version/*]} {[get] [] [] [] [/]} {[get] [] [] [] [/swagger-2.0.0.pb-v1]} {[get] [] [] [] [/openapi/v2]} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create delete get list patch update watch] [ user.openshift.io] [groups identities useridentitymappings users] [] []} {[create delete get list patch update watch] [ authorization.openshift.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [rbac.authorization.k8s.io] [clusterrolebindings rolebindings] [] []} {[create delete get list patch update watch] [ oauth.openshift.io] [oauthclients] [] []} {[delete get list watch] [ oauth.openshift.io] [oauthclientauthorizations] [] []} {[create] [ authorization.openshift.io] [resourceaccessreviews subjectaccessreviews] [] []} {[create] [authorization.k8s.io] [subjectaccessreviews] [] []} {[create] [ project.openshift.io] [projectrequests] [] []} {[get list watch] [] [events minions nodes persistentvolumes pods] [] []} {[get list watch] [ security.openshift.io] [securitycontextconstraints] [] []} {[get list watch] [ quota.openshift.io] [clusterresourcequotas] [] []} {[get list] [ authorization.openshift.io] [clusterpolicybindings] [] []} {[get list watch] [ image.openshift.io] [images imagestreamtags] [] []} {[get list update] [ network.openshift.io] [netnamespaces] [] []} {[get list] [ network.openshift.io] [clusternetworks] [] []} {[get list watch] [ build.openshift.io] [buildconfigs builds] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [authorization.openshift.io ] [selfsubjectrulesreviews] [] []} {[create] [authorization.k8s.io] [selfsubjectaccessreviews] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [project.openshift.io ] [projectrequests] [] []} {[create] [authorization.k8s.io] [selfsubjectaccessreviews] [] []} {[create] [authorization.k8s.io] [selfsubjectrulesreviews] [] []} {[create] [build.openshift.io ] [builds/custom] [] []} {[create] [build.openshift.io ] [builds/docker builds/optimizeddocker] [] []} {[create] [build.openshift.io ] [builds/jenkinspipeline] [] []} {[create] [build.openshift.io ] [builds/source] [] []} {[get] [] [] [] [/.well-known /.well-known/* /api /api/* /apis /apis/* /oapi /oapi/* /osapi /osapi/ /swagger.json /swaggerapi /swaggerapi/* /version /version/*]} {[get] [] [] [] [/]} {[get] [] [] [] [/swagger-2.0.0.pb-v1]} {[get] [] [] [] [/openapi/v2]} {[get] [] [] [] [/healthz]} {[get] [] [] [] [/openapi]} {[get] [] [] [] [/openapi/*]} {[get] [] [] [] [/.well-known /.well-known/* /api /api/* /apis /apis/* /oapi /oapi/* /osapi /osapi/ /swagger.json /swaggerapi /swaggerapi/* /version /version/*]} {[get] [] [] [] [/]} {[get] [] [] [] [/swagger-2.0.0.pb-v1]} {[get] [] [] [] [/openapi/v2]} {[get] [] [] [] [/healthz]} {[get] [] [] [] [/openapi]} {[get] [] [] [] [/openapi/*]} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[get list watch] [] [nodes] [] []} {[get] [] [nodes/metrics nodes/spec] [] []} {[create get] [] [nodes/stats] [] []} {[delete] [oauth.openshift.io ] [oauthaccesstokens oauthauthorizetokens] [] []} {[get] [] [] [] [/version /version/* /api /api/* /apis /apis/* /oapi /oapi/* /openapi/v2 /swaggerapi /swaggerapi/* /swagger.json /swagger-2.0.0.pb-v1 /osapi /osapi/ /.well-known /.well-known/* /]} {[impersonate] [authentication.k8s.io] [userextras/scopes.authorization.openshift.io] [] []} {[create get] [build.openshift.io ] [buildconfigs/webhooks] [] []} {[*] [camel.apache.org] [*] [] []} {[create delete deletecollection get list patch update watch] [] [pods pods/attach pods/exec pods/portforward pods/proxy] [] []} {[create delete deletecollection get list patch update watch] [] [configmaps endpoints persistentvolumeclaims replicationcontrollers replicationcontrollers/scale secrets serviceaccounts services services/proxy] [] []} {[get list watch] [] [bindings events limitranges namespaces/status pods/log pods/status replicationcontrollers/status resourcequotas resourcequotas/status] [] []} {[get list watch] [] [namespaces] [] []} {[impersonate] [] [serviceaccounts] [] []} {[create delete deletecollection get list patch update watch] [apps] [daemonsets deployments deployments/rollback deployments/scale replicasets replicasets/scale statefulsets] [] []} {[create delete deletecollection get list patch update watch] [autoscaling] [horizontalpodautoscalers] [] []} {[create delete deletecollection get list patch update watch] [batch] [cronjobs jobs] [] []} {[create delete deletecollection get list patch update watch] [extensions] [daemonsets deployments deployments/rollback deployments/scale ingresses replicasets replicasets/scale replicationcontrollers/scale] [] []} {[create delete deletecollection get list patch update watch] [policy] [poddisruptionbudgets] [] []} {[create] [authorization.k8s.io] [localsubjectaccessreviews] [] []} {[create delete deletecollection get list patch update watch] [rbac.authorization.k8s.io] [rolebindings roles] [] []} {[create] [apps] [statefulsets/scale] [] []} {[delete] [apps] [statefulsets/scale] [] []} {[deletecollection] [apps] [statefulsets/scale] [] []} {[get] [apps] [statefulsets/scale] [] []} {[list] [apps] [statefulsets/scale] [] []} {[patch] [apps] [statefulsets/scale] [] []} {[update] [apps] [statefulsets/scale] [] []} {[watch] [apps] [statefulsets/scale] [] []} {[create] [extensions] [networkpolicies] [] []} {[delete] [extensions] [networkpolicies] [] []} {[deletecollection] [extensions] [networkpolicies] [] []} {[get] [extensions] [networkpolicies] [] []} {[list] [extensions] [networkpolicies] [] []} {[patch] [extensions] [networkpolicies] [] []} {[update] [extensions] [networkpolicies] [] []} {[watch] [extensions] [networkpolicies] [] []} {[create] [networking.k8s.io] [networkpolicies] [] []} {[delete] [networking.k8s.io] [networkpolicies] [] []} {[deletecollection] [networking.k8s.io] [networkpolicies] [] []} {[get] [networking.k8s.io] [networkpolicies] [] []} {[list] [networking.k8s.io] [networkpolicies] [] []} {[patch] [networking.k8s.io] [networkpolicies] [] []} {[update] [networking.k8s.io] [networkpolicies] [] []} {[watch] [networking.k8s.io] [networkpolicies] [] []} {[get list watch] [] [bindings events limitranges namespaces namespaces/status pods/log pods/status replicationcontrollers/status resourcequotas resourcequotas/status] [] []} {[create delete deletecollection get list patch update watch] [batch] [cronjobs jobs scheduledjobs] [] []} {[create delete deletecollection get list patch update watch] [extensions] [deployments deployments/rollback deployments/scale horizontalpodautoscalers jobs networkpolicies replicasets replicasets/scale replicationcontrollers/scale] [] []} {[get list watch] [extensions] [daemonsets] [] []} {[create delete deletecollection get list patch update watch] [apps] [deployments deployments/scale deployments/status statefulsets] [] []} {[create delete deletecollection get list patch update watch] [authorization.openshift.io ] [rolebindings roles] [] []} {[create] [authorization.openshift.io ] [localresourceaccessreviews localsubjectaccessreviews subjectrulesreviews] [] []} {[create] [security.openshift.io ] [podsecuritypolicyreviews podsecuritypolicyselfsubjectreviews podsecuritypolicysubjectreviews] [] []} {[get list watch] [authorization.openshift.io ] [policies policybindings rolebindingrestrictions] [] []} {[create delete deletecollection get list patch update watch] [build.openshift.io ] [buildconfigs buildconfigs/webhooks builds] [] []} {[get list watch] [build.openshift.io ] [builds/log] [] []} {[create] [build.openshift.io ] [buildconfigs/instantiate buildconfigs/instantiatebinary builds/clone] [] []} {[update] [build.openshift.io ] [builds/details] [] []} {[admin edit view] [build.openshift.io] [jenkins] [] []} {[create delete deletecollection get list patch update watch] [apps.openshift.io ] [deploymentconfigs deploymentconfigs/scale generatedeploymentconfigs] [] []} {[create] [apps.openshift.io ] [deploymentconfigrollbacks deploymentconfigs/instantiate deploymentconfigs/rollback] [] []} {[get list watch] [apps.openshift.io ] [deploymentconfigs/log deploymentconfigs/status] [] []} {[create delete deletecollection get list patch update watch] [image.openshift.io ] [imagestreamimages imagestreammappings imagestreams imagestreams/secrets imagestreamtags] [] []} {[get list watch] [image.openshift.io ] [imagestreams/status] [] []} {[get update] [image.openshift.io ] [imagestreams/layers] [] []} {[create] [image.openshift.io ] [imagestreamimports] [] []} {[delete get patch update] [project.openshift.io ] [projects] [] []} {[get list watch] [quota.openshift.io ] [appliedclusterresourcequotas] [] []} {[create delete deletecollection get list patch update watch] [route.openshift.io ] [routes] [] []} {[create] [route.openshift.io ] [routes/custom-host] [] []} {[get list watch] [route.openshift.io ] [routes/status] [] []} {[update] [route.openshift.io ] [routes/status] [] []} {[create delete deletecollection get list patch update watch] [template.openshift.io ] [processedtemplates templateconfigs templateinstances templates] [] []} {[create delete deletecollection get list patch update watch] [build.openshift.io ] [buildlogs] [] []} {[get list watch] [] [resourcequotausages] [] []} {[create] [authorization.openshift.io ] [resourceaccessreviews subjectaccessreviews] [] []} {[patch] [apps] [petsets] [] []} {[update] [apps] [petsets] [] []} {[watch] [apps] [petsets] [] []} {[create] [apps] [petsets] [] []} {[delete] [apps] [petsets] [] []} {[deletecollection] [apps] [petsets] [] []} {[get] [apps] [petsets] [] []} {[list] [apps] [petsets] [] []} {[patch] [] [deploymentconfigrollbacks] [] []} {[update] [] [deploymentconfigrollbacks] [] []} {[watch] [] [deploymentconfigrollbacks] [] []} {[delete] [] [deploymentconfigrollbacks] [] []} {[deletecollection] [] [deploymentconfigrollbacks] [] []} {[get] [] [deploymentconfigrollbacks] [] []} {[list] [] [deploymentconfigrollbacks] [] []} {[list] [] [deploymentconfigs/rollback] [] []} {[patch] [] [deploymentconfigs/rollback] [] []} {[update] [] [deploymentconfigs/rollback] [] []} {[watch] [] [deploymentconfigs/rollback] [] []} {[delete] [] [deploymentconfigs/rollback] [] []} {[deletecollection] [] [deploymentconfigs/rollback] [] []} {[get] [] [deploymentconfigs/rollback] [] []} {[create] [] [pods/log] [] []} {[delete] [] [pods/log] [] []} {[deletecollection] [] [pods/log] [] []} {[patch] [] [pods/log] [] []} {[update] [] [pods/log] [] []} {[update] [] [deploymentconfigs/log] [] []} {[create] [] [deploymentconfigs/log] [] []} {[delete] [] [deploymentconfigs/log] [] []} {[deletecollection] [] [deploymentconfigs/log] [] []} {[patch] [] [deploymentconfigs/log] [] []} {[list] [] [deployments] [] []} {[patch] [] [deployments] [] []} {[update] [] [deployments] [] []} {[watch] [] [deployments] [] []} {[create] [] [deployments] [] []} {[delete] [] [deployments] [] []} {[deletecollection] [] [deployments] [] []} {[get] [] [deployments] [] []} {[list] [] [subjectaccessreviews] [] []} {[patch] [] [subjectaccessreviews] [] []} {[update] [] [subjectaccessreviews] [] []} {[watch] [] [subjectaccessreviews] [] []} {[delete] [] [subjectaccessreviews] [] []} {[deletecollection] [] [subjectaccessreviews] [] []} {[get] [] [subjectaccessreviews] [] []} {[list] [] [buildconfigs/instantiatebinary] [] []} {[patch] [] [buildconfigs/instantiatebinary] [] []} {[update] [] [buildconfigs/instantiatebinary] [] []} {[watch] [] [buildconfigs/instantiatebinary] [] []} {[delete] [] [buildconfigs/instantiatebinary] [] []} {[deletecollection] [] [buildconfigs/instantiatebinary] [] []} {[get] [] [buildconfigs/instantiatebinary] [] []} {[delete] [] [localresourceaccessreviews] [] []} {[deletecollection] [] [localresourceaccessreviews] [] []} {[get] [] [localresourceaccessreviews] [] []} {[list] [] [localresourceaccessreviews] [] []} {[patch] [] [localresourceaccessreviews] [] []} {[update] [] [localresourceaccessreviews] [] []} {[watch] [] [localresourceaccessreviews] [] []} {[deletecollection] [] [projects] [] []} {[list] [] [projects] [] []} {[watch] [] [projects] [] []} {[create] [] [projects] [] []} {[patch] [] [resourceaccessreviews] [] []} {[update] [] [resourceaccessreviews] [] []} {[watch] [] [resourceaccessreviews] [] []} {[delete] [] [resourceaccessreviews] [] []} {[deletecollection] [] [resourceaccessreviews] [] []} {[get] [] [resourceaccessreviews] [] []} {[list] [] [resourceaccessreviews] [] []} {[deletecollection] [] [buildconfigs/instantiate] [] []} {[get] [] [buildconfigs/instantiate] [] []} {[list] [] [buildconfigs/instantiate] [] []} {[patch] [] [buildconfigs/instantiate] [] []} {[update] [] [buildconfigs/instantiate] [] []} {[watch] [] [buildconfigs/instantiate] [] []} {[delete] [] [buildconfigs/instantiate] [] []} {[patch] [] [builds/log] [] []} {[update] [] [builds/log] [] []} {[create] [] [builds/log] [] []} {[delete] [] [builds/log] [] []} {[deletecollection] [] [builds/log] [] []} {[watch] [] [imagestreamimports] [] []} {[delete] [] [imagestreamimports] [] []} {[deletecollection] [] [imagestreamimports] [] []} {[get] [] [imagestreamimports] [] []} {[list] [] [imagestreamimports] [] []} {[patch] [] [imagestreamimports] [] []} {[update] [] [imagestreamimports] [] []} {[patch] [] [builds/clone] [] []} {[update] [] [builds/clone] [] []} {[watch] [] [builds/clone] [] []} {[delete] [] [builds/clone] [] []} {[deletecollection] [] [builds/clone] [] []} {[get] [] [builds/clone] [] []} {[list] [] [builds/clone] [] []} {[watch] [] [localsubjectaccessreviews] [] []} {[delete] [] [localsubjectaccessreviews] [] []} {[deletecollection] [] [localsubjectaccessreviews] [] []} {[get] [] [localsubjectaccessreviews] [] []} {[list] [] [localsubjectaccessreviews] [] []} {[patch] [] [localsubjectaccessreviews] [] []} {[update] [] [localsubjectaccessreviews] [] []} {[get] [] [securitycontextconstraints] [] []} {[list] [] [securitycontextconstraints] [] []} {[watch] [] [securitycontextconstraints] [] []} {[get] [] [minions] [] []} {[list] [] [minions] [] []} {[watch] [] [minions] [] []} {[get] [] [nodes] [] []} {[list] [] [nodes] [] []} {[watch] [] [nodes] [] []} {[get] [] [persistentvolumes] [] []} {[list] [] [persistentvolumes] [] []} {[watch] [] [persistentvolumes] [] []} {[create] [rbac.authorization.k8s.io] [rolebindings] [] []} {[delete] [rbac.authorization.k8s.io] [rolebindings] [] []} {[deletecollection] [rbac.authorization.k8s.io] [rolebindings] [] []} {[get] [rbac.authorization.k8s.io] [rolebindings] [] []} {[list] [rbac.authorization.k8s.io] [rolebindings] [] []} {[patch] [rbac.authorization.k8s.io] [rolebindings] [] []} {[update] [rbac.authorization.k8s.io] [rolebindings] [] []} {[watch] [rbac.authorization.k8s.io] [rolebindings] [] []} {[create] [rbac.authorization.k8s.io] [roles] [] []} {[delete] [rbac.authorization.k8s.io] [roles] [] []} {[deletecollection] [rbac.authorization.k8s.io] [roles] [] []} {[get] [rbac.authorization.k8s.io] [roles] [] []} {[list] [rbac.authorization.k8s.io] [roles] [] []} {[patch] [rbac.authorization.k8s.io] [roles] [] []} {[update] [rbac.authorization.k8s.io] [roles] [] []} {[watch] [rbac.authorization.k8s.io] [roles] [] []} {[create] [apps] [deployments/rollback] [] []} {[delete] [apps] [deployments/rollback] [] []} {[deletecollection] [apps] [deployments/rollback] [] []} {[get] [apps] [deployments/rollback] [] []} {[list] [apps] [deployments/rollback] [] []} {[patch] [apps] [deployments/rollback] [] []} {[update] [apps] [deployments/rollback] [] []} {[watch] [apps] [deployments/rollback] [] []} {[create] [apps] [replicasets] [] []} {[delete] [apps] [replicasets] [] []} {[deletecollection] [apps] [replicasets] [] []} {[get] [apps] [replicasets] [] []} {[list] [apps] [replicasets] [] []} {[patch] [apps] [replicasets] [] []} {[update] [apps] [replicasets] [] []} {[watch] [apps] [replicasets] [] []} {[create] [apps] [replicasets/scale] [] []} {[delete] [apps] [replicasets/scale] [] []} {[deletecollection] [apps] [replicasets/scale] [] []} {[get] [apps] [replicasets/scale] [] []} {[list] [apps] [replicasets/scale] [] []} {[patch] [apps] [replicasets/scale] [] []} {[update] [apps] [replicasets/scale] [] []} {[watch] [apps] [replicasets/scale] [] []} {[create] [apps] [replicationcontrollers/scale] [] []} {[delete] [apps] [replicationcontrollers/scale] [] []} {[deletecollection] [apps] [replicationcontrollers/scale] [] []} {[get] [apps] [replicationcontrollers/scale] [] []} {[list] [apps] [replicationcontrollers/scale] [] []} {[patch] [apps] [replicationcontrollers/scale] [] []} {[update] [apps] [replicationcontrollers/scale] [] []} {[watch] [apps] [replicationcontrollers/scale] [] []} {[get] [apps] [daemonsets] [] []} {[list] [apps] [daemonsets] [] []} {[watch] [apps] [daemonsets] [] []} {[create update delete get list watch patch] [servicecatalog.k8s.io] [serviceinstances servicebindings] [] []} {[create update delete get list watch] [settings.k8s.io] [podpresets] [] []}] ruleResolutionErrors=[]
error: roles.rbac.authorization.k8s.io "syndesis-editor" not found
- This leads to inability to publish integrations (the status remains Assembling) due to:
2019-07-02 07:09:55.006 INFO [-,,,] 1 --- [tion Controller] i.s.s.c.i.online.PublishHandler : Integration [logger]: Created project files and starting build
2019-07-02 07:09:55.908 ERROR [-,,,] 1 --- [tion Controller] i.s.s.c.i.online.PublishHandler : Integration [logger]: [ERROR] Activation failure
io.fabric8.kubernetes.client.KubernetesClientException: Failure executing: POST at: https://kubernetes.default.svc/apis/image.openshift.io/v1/namespaces/syndesis-test/imagestreams. Message: Forbidden!Configured service account doesn't have access. Service account may have been revoked. imagestreams.image.openshift.io is forbidden: User "system:serviceaccount:syndesis-test:syndesis-server" cannot create imagestreams.image.openshift.io in the namespace "syndesis-test": no RBAC policy matched.
at io.fabric8.kubernetes.client.dsl.base.OperationSupport.requestFailure(OperationSupport.java:472) ~[kubernetes-client-3.1.12.fuse-730022.jar!/:na]
at io.fabric8.kubernetes.client.dsl.base.OperationSupport.assertResponseCode(OperationSupport.java:409) ~[kubernetes-client-3.1.12.fuse-730022.jar!/:na]
at io.fabric8.kubernetes.client.dsl.base.OperationSupport.handleResponse(OperationSupport.java:381) ~[kubernetes-client-3.1.12.fuse-730022.jar!/:na]
at io.fabric8.kubernetes.client.dsl.base.OperationSupport.handleResponse(OperationSupport.java:344) ~[kubernetes-client-3.1.12.fuse-730022.jar!/:na]
at io.fabric8.kubernetes.client.dsl.base.OperationSupport.handleCreate(OperationSupport.java:227) ~[kubernetes-client-3.1.12.fuse-730022.jar!/:na]
at io.fabric8.kubernetes.client.dsl.base.BaseOperation.handleCreate(BaseOperation.java:766) ~[kubernetes-client-3.1.12.fuse-730022.jar!/:na]
at io.fabric8.kubernetes.client.dsl.base.BaseOperation.create(BaseOperation.java:335) ~[kubernetes-client-3.1.12.fuse-730022.jar!/:na]
at io.fabric8.kubernetes.client.dsl.base.BaseOperation.createOrReplace(BaseOperation.java:404) ~[kubernetes-client-3.1.12.fuse-730022.jar!/:na]
at io.fabric8.kubernetes.client.dsl.base.BaseOperation$2.apply(BaseOperation.java:373) ~[kubernetes-client-3.1.12.fuse-730022.jar!/:na]
at io.fabric8.openshift.api.model.DoneableImageStream.done(DoneableImageStream.java:27) ~[kubernetes-model-2.0.10.jar!/:2.0.10]
at io.syndesis.server.openshift.OpenShiftServiceImpl.ensureImageStreams(OpenShiftServiceImpl.java:213) ~[server-openshift-1.7.8.jar!/:1.7.8]
at io.syndesis.server.openshift.OpenShiftServiceImpl.build(OpenShiftServiceImpl.java:80) ~[server-openshift-1.7.8.jar!/:1.7.8]
at io.syndesis.server.controller.integration.online.PublishHandler.build(PublishHandler.java:173) ~[server-controller-1.7.8.jar!/:1.7.8]
at io.syndesis.server.controller.integration.online.PublishHandler$BuildStepOncePerformer.perform(PublishHandler.java:284) ~[server-controller-1.7.8.jar!/:1.7.8]
at io.syndesis.server.controller.integration.online.PublishHandler.execute(PublishHandler.java:101) ~[server-controller-1.7.8.jar!/:1.7.8]
at io.syndesis.server.controller.StateChangeHandler.execute(StateChangeHandler.java:33) [server-controller-1.7.8.jar!/:1.7.8]
at io.syndesis.server.controller.integration.BaseIntegrationController.lambda$callStateChangeHandler$10(BaseIntegrationController.java:220) [server-controller-1.7.8.jar!/:1.7.8]
at java.util.concurrent.ThreadPoolExecutor.runWorker(ThreadPoolExecutor.java:1149) ~[na:1.8.0_151]
at java.util.concurrent.ThreadPoolExecutor$Worker.run(ThreadPoolExecutor.java:624) ~[na:1.8.0_151]
at java.lang.Thread.run(Thread.java:748) ~[na:1.8.0_151]
Can you help with this one @lgarciaaco?
About this issue
- Original URL
- State: closed
- Created 5 years ago
- Comments: 20 (10 by maintainers)
Commits related to this issue
- Fix #6028: set only allowed permissions from edit clusterrole on syndesis-edit role — committed to nicolaferraro/syndesis by nicolaferraro 5 years ago
- Fix #6028: set only allowed permissions from edit clusterrole on syndesis-edit role — committed to nicolaferraro/syndesis by nicolaferraro 5 years ago
- Fix #6028: set only allowed permissions from edit clusterrole on syndesis-edit role — committed to nicolaferraro/syndesis by nicolaferraro 5 years ago
@lgarciaaco Is on PTO, but I think @nicolaferraro might be able to help