Context
A Role bound to a Pod's ServiceAccount grants overly permissive permissions. Complete the following tasks to reduce the set of permissions.
Task
Given an existing Pod named web-pod running in the namespace security.
Edit the existing Role bound to the Pod's ServiceAccount sa-dev-1 to only allow performing watch operations, only on resources of type services.
Create a new Role named role-2 in the namespace security, which only allows performing update
operations, only on resources of type namespaces.
Create a new RoleBinding named role-2-binding binding the newly created Role to the Pod's ServiceAccount.
Loreta
5 months agoHerminia
4 months agoClorinda
4 months agoMarica
4 months agoAllene
4 months agoNikita
5 months agoTamar
4 months agoPaz
4 months agoTroy
4 months agoRutha
5 months agoLarae
5 months agoMelvin
4 months agoSage
4 months agoLynelle
4 months agoVincent
5 months agoRima
6 months agoKelvin
6 months agoBrent
5 months agoAmber
5 months agoFreeman
5 months agoDong
5 months agoRutha
6 months agoRima
6 months ago