Skip to content

Commit 30d5b0a

Browse files
authored
fix: Add RBAC permission to patch events (#879)
* fix: Add RBAC permission to patch events * changelog
1 parent 4952651 commit 30d5b0a

File tree

2 files changed

+4
-0
lines changed

2 files changed

+4
-0
lines changed

CHANGELOG.md

Lines changed: 3 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -33,6 +33,8 @@ All notable changes to this project will be documented in this file.
3333
- The default Kubernetes cluster domain name is now fetched from the kubelet API unless explicitly configured.
3434
- This requires operators to have the RBAC permission to get nodes/proxy in the apiGroup "". The helm-chart takes care of this.
3535
- The CLI argument `--kubernetes-node-name` or env variable `KUBERNETES_NODE_NAME` needs to be set. The helm-chart takes care of this.
36+
- The operator helm-chart now grants RBAC `patch` permissions on `events.k8s.io/events`,
37+
so events can be aggregated (e.g. "error happened 10 times over the last 5 minutes") ([#879]).
3638

3739
### Fixed
3840

@@ -61,6 +63,7 @@ All notable changes to this project will be documented in this file.
6163
[#866]: https://github.com/stackabletech/kafka-operator/pull/866
6264
[#868]: https://github.com/stackabletech/kafka-operator/pull/868
6365
[#878]: https://github.com/stackabletech/kafka-operator/pull/878
66+
[#879]: https://github.com/stackabletech/kafka-operator/pull/879
6467

6568
## [25.3.0] - 2025-03-21
6669

deploy/helm/kafka-operator/templates/roles.yaml

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -163,6 +163,7 @@ rules:
163163
- events
164164
verbs:
165165
- create
166+
- patch
166167
{{ if .Capabilities.APIVersions.Has "security.openshift.io/v1" }}
167168
- apiGroups:
168169
- security.openshift.io

0 commit comments

Comments
 (0)