Fix: Storage Analysis RBAC permissions and StorageClass API call
This commit is contained in:
@@ -551,8 +551,9 @@ class K8sClient:
|
|||||||
raise RuntimeError("Kubernetes client not initialized")
|
raise RuntimeError("Kubernetes client not initialized")
|
||||||
|
|
||||||
try:
|
try:
|
||||||
# List all storage classes
|
# List all storage classes using the storage API
|
||||||
storage_classes = self.v1.list_storage_class(watch=False)
|
storage_api = client.StorageV1Api()
|
||||||
|
storage_classes = storage_api.list_storage_class(watch=False)
|
||||||
return storage_classes.items
|
return storage_classes.items
|
||||||
|
|
||||||
except ApiException as e:
|
except ApiException as e:
|
||||||
|
|||||||
@@ -43,6 +43,13 @@ rules:
|
|||||||
- apiGroups: [""]
|
- apiGroups: [""]
|
||||||
resources: ["events"]
|
resources: ["events"]
|
||||||
verbs: ["get", "list", "watch", "create"]
|
verbs: ["get", "list", "watch", "create"]
|
||||||
|
# Permissões para storage (PVCs e StorageClasses)
|
||||||
|
- apiGroups: [""]
|
||||||
|
resources: ["persistentvolumeclaims", "persistentvolumes"]
|
||||||
|
verbs: ["get", "list", "watch"]
|
||||||
|
- apiGroups: ["storage.k8s.io"]
|
||||||
|
resources: ["storageclasses"]
|
||||||
|
verbs: ["get", "list", "watch"]
|
||||||
---
|
---
|
||||||
apiVersion: rbac.authorization.k8s.io/v1
|
apiVersion: rbac.authorization.k8s.io/v1
|
||||||
kind: ClusterRoleBinding
|
kind: ClusterRoleBinding
|
||||||
|
|||||||
Reference in New Issue
Block a user