apiVersion: rbac.authorization.k8s.io/v1 kind: Role metadata: name: cert-manager-webhook-ovh namespace: cert-manager-ops labels: app: cert-manager-webhook-ovh rules: - apiGroups: [""] resources: ["secrets"] verbs: ["get", "list", "watch"] --- apiVersion: rbac.authorization.k8s.io/v1 kind: RoleBinding metadata: name: cert-manager-webhook-ovh namespace: cert-manager-ops labels: app: cert-manager-webhook-ovh roleRef: apiGroup: rbac.authorization.k8s.io kind: Role name: cert-manager-webhook-ovh subjects: - kind: ServiceAccount name: {{ .Values.serviceAccount.name }} namespace: cert-manager-ops