{{- if and .Values.rbac.create (not .Values.rbac.namespaced) }} apiVersion: rbac.authorization.k8s.io/v1 kind: ClusterRole metadata: name: {{ template "kapacitor.fullname" . }}-clusterrole labels: chart: "{{ .Chart.Name }}-{{ .Chart.Version }}" release: "{{ .Release.Name }}" heritage: "{{ .Release.Service }}" app: {{ template "kapacitor.fullname" . }} {{- if .Values.sidecar.sideload.enabled }} rules: - apiGroups: [""] # "" indicates the core API group resources: ["configmaps", "secrets"] verbs: ["get", "watch", "list"] {{- else }} rules: [] {{- end}} {{- end}}