Skip to content
Closed
Show file tree
Hide file tree
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
1 change: 1 addition & 0 deletions manifests/02-namespace.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -8,6 +8,7 @@ metadata:
include.release.openshift.io/ibm-cloud-managed: "true"
include.release.openshift.io/single-node-developer: "true"
workload.openshift.io/allowed: "management"
capability.openshift.io/name: insights
labels:
openshift.io/cluster-monitoring: "true"
name: openshift-insights
23 changes: 16 additions & 7 deletions manifests/03-clusterrole.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -6,6 +6,7 @@ metadata:
include.release.openshift.io/self-managed-high-availability: "true"
include.release.openshift.io/ibm-cloud-managed: "true"
include.release.openshift.io/single-node-developer: "true"
capability.openshift.io/name: insights
roleRef:
kind: ClusterRole
name: system:auth-delegator
Expand All @@ -23,6 +24,7 @@ metadata:
include.release.openshift.io/self-managed-high-availability: "true"
include.release.openshift.io/ibm-cloud-managed: "true"
include.release.openshift.io/single-node-developer: "true"
capability.openshift.io/name: insights
roleRef:
kind: Role
name: extension-apiserver-authentication-reader
Expand All @@ -31,7 +33,6 @@ subjects:
namespace: openshift-insights
name: operator
---

apiVersion: rbac.authorization.k8s.io/v1
kind: ClusterRole
metadata:
Expand All @@ -40,6 +41,7 @@ metadata:
include.release.openshift.io/self-managed-high-availability: "true"
include.release.openshift.io/ibm-cloud-managed: "true"
include.release.openshift.io/single-node-developer: "true"
capability.openshift.io/name: insights
rules:
# allow the operator to update cluster operator status
- apiGroups:
Expand Down Expand Up @@ -74,7 +76,6 @@ rules:
- namespaces
verbs:
- get

---
apiVersion: rbac.authorization.k8s.io/v1
kind: RoleBinding
Expand All @@ -85,16 +86,15 @@ metadata:
include.release.openshift.io/self-managed-high-availability: "true"
include.release.openshift.io/ibm-cloud-managed: "true"
include.release.openshift.io/single-node-developer: "true"
capability.openshift.io/name: insights
roleRef:
kind: Role
name: monitoring-alertmanager-edit
subjects:
- kind: ServiceAccount
namespace: openshift-insights
name: operator

---

---
apiVersion: rbac.authorization.k8s.io/v1
kind: ClusterRoleBinding
Expand All @@ -104,14 +104,14 @@ metadata:
include.release.openshift.io/self-managed-high-availability: "true"
include.release.openshift.io/ibm-cloud-managed: "true"
include.release.openshift.io/single-node-developer: "true"
capability.openshift.io/name: insights
roleRef:
kind: ClusterRole
name: insights-operator
subjects:
- kind: ServiceAccount
namespace: openshift-insights
name: operator

---
apiVersion: rbac.authorization.k8s.io/v1
kind: ClusterRole
Expand All @@ -121,6 +121,7 @@ metadata:
include.release.openshift.io/self-managed-high-availability: "true"
include.release.openshift.io/ibm-cloud-managed: "true"
include.release.openshift.io/single-node-developer: "true"
capability.openshift.io/name: insights
rules:
- apiGroups:
- ""
Expand Down Expand Up @@ -272,14 +273,14 @@ metadata:
include.release.openshift.io/self-managed-high-availability: "true"
include.release.openshift.io/ibm-cloud-managed: "true"
include.release.openshift.io/single-node-developer: "true"
capability.openshift.io/name: insights
roleRef:
kind: ClusterRole
name: insights-operator-gather
subjects:
- kind: ServiceAccount
namespace: openshift-insights
name: gather

---
apiVersion: rbac.authorization.k8s.io/v1
kind: ClusterRoleBinding
Expand All @@ -289,6 +290,7 @@ metadata:
include.release.openshift.io/self-managed-high-availability: "true"
include.release.openshift.io/ibm-cloud-managed: "true"
include.release.openshift.io/single-node-developer: "true"
capability.openshift.io/name: insights
roleRef:
kind: ClusterRole
name: cluster-reader
Expand All @@ -307,6 +309,7 @@ metadata:
include.release.openshift.io/self-managed-high-availability: "true"
include.release.openshift.io/ibm-cloud-managed: "true"
include.release.openshift.io/single-node-developer: "true"
capability.openshift.io/name: insights
rules:
- apiGroups:
- ""
Expand All @@ -328,14 +331,14 @@ metadata:
include.release.openshift.io/self-managed-high-availability: "true"
include.release.openshift.io/ibm-cloud-managed: "true"
include.release.openshift.io/single-node-developer: "true"
capability.openshift.io/name: insights
roleRef:
kind: Role
name: insights-operator
subjects:
- kind: ServiceAccount
name: operator
namespace: openshift-insights

---
apiVersion: rbac.authorization.k8s.io/v1
kind: Role
Expand All @@ -346,6 +349,7 @@ metadata:
include.release.openshift.io/self-managed-high-availability: "true"
include.release.openshift.io/ibm-cloud-managed: "true"
include.release.openshift.io/single-node-developer: "true"
capability.openshift.io/name: insights
rules:
- apiGroups:
- ""
Expand All @@ -371,6 +375,7 @@ metadata:
include.release.openshift.io/self-managed-high-availability: "true"
include.release.openshift.io/ibm-cloud-managed: "true"
include.release.openshift.io/single-node-developer: "true"
capability.openshift.io/name: insights
roleRef:
kind: Role
name: insights-operator
Expand All @@ -388,6 +393,7 @@ metadata:
include.release.openshift.io/self-managed-high-availability: "true"
include.release.openshift.io/ibm-cloud-managed: "true"
include.release.openshift.io/single-node-developer: "true"
capability.openshift.io/name: insights
rules:
- apiGroups:
- ''
Expand All @@ -410,6 +416,7 @@ metadata:
include.release.openshift.io/self-managed-high-availability: "true"
include.release.openshift.io/ibm-cloud-managed: "true"
include.release.openshift.io/single-node-developer: "true"
capability.openshift.io/name: insights
subjects:
- kind: ServiceAccount
name: operator
Expand All @@ -427,6 +434,7 @@ metadata:
include.release.openshift.io/self-managed-high-availability: "true"
include.release.openshift.io/ibm-cloud-managed: "true"
include.release.openshift.io/single-node-developer: "true"
capability.openshift.io/name: insights
rules:
- apiGroups:
- ''
Expand All @@ -449,6 +457,7 @@ metadata:
include.release.openshift.io/self-managed-high-availability: "true"
include.release.openshift.io/ibm-cloud-managed: "true"
include.release.openshift.io/single-node-developer: "true"
capability.openshift.io/name: insights
subjects:
- kind: ServiceAccount
name: operator
Expand Down
1 change: 1 addition & 0 deletions manifests/03-prometheus_role.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -7,6 +7,7 @@ metadata:
include.release.openshift.io/self-managed-high-availability: "true"
include.release.openshift.io/ibm-cloud-managed: "true"
include.release.openshift.io/single-node-developer: "true"
capability.openshift.io/name: insights
rules:
- apiGroups:
- ""
Expand Down
1 change: 1 addition & 0 deletions manifests/03-prometheus_rolebinding.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -7,6 +7,7 @@ metadata:
include.release.openshift.io/self-managed-high-availability: "true"
include.release.openshift.io/ibm-cloud-managed: "true"
include.release.openshift.io/single-node-developer: "true"
capability.openshift.io/name: insights
roleRef:
apiGroup: rbac.authorization.k8s.io
kind: Role
Expand Down
1 change: 1 addition & 0 deletions manifests/04-proxy-cert-configmap.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -8,5 +8,6 @@ metadata:
release.openshift.io/create-only: "true"
include.release.openshift.io/ibm-cloud-managed: "true"
include.release.openshift.io/single-node-developer: "true"
capability.openshift.io/name: insights
labels:
config.openshift.io/inject-trusted-cabundle: "true"
1 change: 1 addition & 0 deletions manifests/04-service-ca-configmap.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -9,3 +9,4 @@ metadata:
service.beta.openshift.io/inject-cabundle: "true"
include.release.openshift.io/ibm-cloud-managed: "true"
include.release.openshift.io/single-node-developer: "true"
capability.openshift.io/name: insights
2 changes: 2 additions & 0 deletions manifests/04-serviceaccount.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -7,6 +7,7 @@ metadata:
include.release.openshift.io/self-managed-high-availability: "true"
include.release.openshift.io/ibm-cloud-managed: "true"
include.release.openshift.io/single-node-developer: "true"
capability.openshift.io/name: insights
---
apiVersion: v1
kind: ServiceAccount
Expand All @@ -17,3 +18,4 @@ metadata:
include.release.openshift.io/self-managed-high-availability: "true"
include.release.openshift.io/ibm-cloud-managed: "true"
include.release.openshift.io/single-node-developer: "true"
capability.openshift.io/name: insights
1 change: 1 addition & 0 deletions manifests/05-service.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -7,6 +7,7 @@ metadata:
service.alpha.openshift.io/serving-cert-secret-name: openshift-insights-serving-cert
include.release.openshift.io/single-node-developer: "true"
include.release.openshift.io/ibm-cloud-managed: "true"
capability.openshift.io/name: insights
labels:
app: insights-operator
name: metrics
Expand Down
2 changes: 2 additions & 0 deletions manifests/06-deployment-ibm-cloud-managed.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -5,6 +5,7 @@ metadata:
annotations:
config.openshift.io/inject-proxy: insights-operator
include.release.openshift.io/ibm-cloud-managed: "true"
capability.openshift.io/name: insights
name: insights-operator
namespace: openshift-insights
spec:
Expand All @@ -17,6 +18,7 @@ spec:
metadata:
annotations:
target.workload.openshift.io/management: '{"effect": "PreferredDuringScheduling"}'
capability.openshift.io/name: insights
labels:
app: insights-operator
spec:
Expand Down
2 changes: 2 additions & 0 deletions manifests/06-deployment.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -8,6 +8,7 @@ metadata:
exclude.release.openshift.io/internal-openshift-hosted: "true"
include.release.openshift.io/self-managed-high-availability: "true"
include.release.openshift.io/single-node-developer: "true"
capability.openshift.io/name: insights
spec:
strategy:
type: Recreate
Expand All @@ -18,6 +19,7 @@ spec:
metadata:
annotations:
target.workload.openshift.io/management: '{"effect": "PreferredDuringScheduling"}'
capability.openshift.io/name: insights
labels:
app: insights-operator
spec:
Expand Down
1 change: 1 addition & 0 deletions manifests/07-cluster-operator.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -7,6 +7,7 @@ metadata:
include.release.openshift.io/self-managed-high-availability: "true"
include.release.openshift.io/single-node-developer: "true"
include.release.openshift.io/ibm-cloud-managed: "true"
capability.openshift.io/name: insights
spec: {}
status:
versions:
Expand Down
1 change: 1 addition & 0 deletions manifests/07-servicemonitor.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -8,6 +8,7 @@ metadata:
include.release.openshift.io/self-managed-high-availability: "true"
include.release.openshift.io/single-node-developer: "true"
include.release.openshift.io/ibm-cloud-managed: "true"
capability.openshift.io/name: insights
spec:
endpoints:
- bearerTokenFile: /var/run/secrets/kubernetes.io/serviceaccount/token
Expand Down
2 changes: 1 addition & 1 deletion manifests/08-prometheus_rule.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -5,6 +5,7 @@ metadata:
include.release.openshift.io/self-managed-high-availability: "true"
include.release.openshift.io/ibm-cloud-managed: "true"
include.release.openshift.io/single-node-developer: "true"
capability.openshift.io/name: insights
name: insights-prometheus-rules
namespace: openshift-insights
spec:
Expand All @@ -29,4 +30,3 @@ spec:
for: 5m
labels:
severity: info