Skip to content

Commit fc03233

Browse files
committed
fix: Add RBAC permission to patch events (#879)
* fix: Add RBAC permission to patch events * changelog
1 parent 1ba8e0d commit fc03233

File tree

2 files changed

+4
-0
lines changed

2 files changed

+4
-0
lines changed

CHANGELOG.md

Lines changed: 3 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -35,6 +35,8 @@ All notable changes to this project will be documented in this file.
3535
- The default Kubernetes cluster domain name is now fetched from the kubelet API unless explicitly configured.
3636
- This requires operators to have the RBAC permission to get nodes/proxy in the apiGroup "". The helm-chart takes care of this.
3737
- The CLI argument `--kubernetes-node-name` or env variable `KUBERNETES_NODE_NAME` needs to be set. The helm-chart takes care of this.
38+
- The operator helm-chart now grants RBAC `patch` permissions on `events.k8s.io/events`,
39+
so events can be aggregated (e.g. "error happened 10 times over the last 5 minutes") ([#879]).
3840

3941
### Fixed
4042

@@ -63,6 +65,7 @@ All notable changes to this project will be documented in this file.
6365
[#866]: https://github.com/stackabletech/kafka-operator/pull/866
6466
[#868]: https://github.com/stackabletech/kafka-operator/pull/868
6567
[#878]: https://github.com/stackabletech/kafka-operator/pull/878
68+
[#879]: https://github.com/stackabletech/kafka-operator/pull/879
6669

6770
## [25.3.0] - 2025-03-21
6871

deploy/helm/kafka-operator/templates/roles.yaml

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -163,6 +163,7 @@ rules:
163163
- events
164164
verbs:
165165
- create
166+
- patch
166167
{{ if .Capabilities.APIVersions.Has "security.openshift.io/v1" }}
167168
- apiGroups:
168169
- security.openshift.io

0 commit comments

Comments
 (0)