--- apiVersion: rbac.authorization.k8s.io/v1 kind: ClusterRole metadata: labels: app.kubernetes.io/name: clusterrole app.kubernetes.io/instance: anthoscertmanager-secret-reader app.kubernetes.io/component: anthos-cert-manager app.kubernetes.io/created-by: anthoscertmanager app.kubernetes.io/part-of: anthoscertmanager app.kubernetes.io/managed-by: kustomize creationTimestamp: null name: anthoscertmanager-secret-reader-role rules: - apiGroups: [""] resources: ["secrets"] verbs: ["get", "list", "watch"]