From 142911c8d20f45e06cdfef914a6073cef4f0748e Mon Sep 17 00:00:00 2001 From: gitea-admin Date: Sat, 9 May 2026 20:11:34 +0000 Subject: [PATCH] feat: deploy Tailscale operator --- deployments/tailscale-operator/rbac.yaml | 33 ++++++++++++++++++++++++ 1 file changed, 33 insertions(+) create mode 100644 deployments/tailscale-operator/rbac.yaml diff --git a/deployments/tailscale-operator/rbac.yaml b/deployments/tailscale-operator/rbac.yaml new file mode 100644 index 0000000..ac2a657 --- /dev/null +++ b/deployments/tailscale-operator/rbac.yaml @@ -0,0 +1,33 @@ +apiVersion: v1 +kind: ServiceAccount +metadata: + name: tailscale-operator + namespace: tailscale +--- +apiVersion: rbac.authorization.k8s.io/v1 +kind: ClusterRole +metadata: + name: tailscale-operator +rules: + - apiGroups: [""] + resources: ["secrets", "services", "endpoints", "namespaces", "nodes"] + verbs: ["get", "list", "watch", "create", "update", "patch", "delete"] + - apiGroups: ["apps"] + resources: ["deployments", "statefulsets", "daemonsets"] + verbs: ["get", "list", "watch", "update", "patch"] + - apiGroups: ["tailscale.com"] + resources: ["*"] + verbs: ["*"] +--- +apiVersion: rbac.authorization.k8s.io/v1 +kind: ClusterRoleBinding +metadata: + name: tailscale-operator +roleRef: + apiGroup: rbac.authorization.k8s.io + kind: ClusterRole + name: tailscale-operator +subjects: + - kind: ServiceAccount + name: tailscale-operator + namespace: tailscale