Skip to content

Commit 9dbc913

Browse files
authored
fix: additional cluster SA, role names (#10366)
1 parent ed5567b commit 9dbc913

File tree

1 file changed

+6
-3
lines changed

1 file changed

+6
-3
lines changed

docs/platforms/kubernetes/additional-clusters.md

Lines changed: 6 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -109,7 +109,8 @@ kubectl apply -n coder-workspaces -f - <<EOF
109109
apiVersion: v1
110110
kind: ServiceAccount
111111
metadata:
112-
name: coder
112+
# Must be different than the Coder control plane service account, so prevent duplicates.
113+
name: coder-2
113114
---
114115
apiVersion: v1
115116
kind: Secret
@@ -122,7 +123,8 @@ type: kubernetes.io/service-account-token
122123
apiVersion: rbac.authorization.k8s.io/v1
123124
kind: Role
124125
metadata:
125-
name: coder
126+
# Must be different than the Coder control plane service account, so prevent duplicates.
127+
name: coder-2
126128
rules:
127129
- apiGroups: ["", "apps", "networking.k8s.io"] # "" indicates the core API group
128130
resources: ["persistentvolumeclaims", "pods", "deployments", "services", "secrets", "pods/exec","pods/log", "events", "networkpolicies", "serviceaccounts"]
@@ -134,7 +136,8 @@ rules:
134136
apiVersion: rbac.authorization.k8s.io/v1
135137
kind: RoleBinding
136138
metadata:
137-
name: coder
139+
# Must be different than the Coder control plane service account, so prevent duplicates.
140+
name: coder-2
138141
subjects:
139142
- kind: ServiceAccount
140143
name: coder

0 commit comments

Comments
 (0)