| Summary: | Can not add custom role to group | ||
|---|---|---|---|
| Product: | OpenShift Container Platform | Reporter: | Ian Tewksbury <itewksbu> |
| Component: | apiserver-auth | Assignee: | Jordan Liggitt <jliggitt> |
| Status: | CLOSED NOTABUG | QA Contact: | weiwei jiang <wjiang> |
| Severity: | unspecified | Docs Contact: | |
| Priority: | unspecified | ||
| Version: | 3.3.0 | CC: | aos-bugs, jlee, jokerman, mmccomas, wsun |
| Target Milestone: | --- | ||
| Target Release: | --- | ||
| Hardware: | Unspecified | ||
| OS: | Unspecified | ||
| Whiteboard: | |||
| Fixed In Version: | Doc Type: | If docs needed, set a value | |
| Doc Text: | Story Points: | --- | |
| Clone Of: | Environment: | ||
| Last Closed: | 2016-10-06 19:52:53 UTC | Type: | Bug |
| Regression: | --- | Mount Type: | --- |
| Documentation: | --- | CRM: | |
| Verified Versions: | Category: | --- | |
| oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
| Cloudforms Team: | --- | Target Upstream Version: | |
|
Description
Ian Tewksbury
2016-10-06 18:06:01 UTC
to grant a role defined within a namespace, use `... add-role-to-user ... --role-namespace=<namespace containing role>` Jordan, Where is that in the doc? ~Ian $ oadm policy add-role-to-user --help
Add a role to users or serviceaccounts for the current project
Usage:
oadm policy add-role-to-user ROLE (USER | -z SERVICEACCOUNT) [USER ...] [options]
Examples:
# Add the 'view' role to user1 for the current project
oadm policy add-role-to-user view user1
# Add the 'edit' role to serviceaccount1 for the current project
oadm policy add-role-to-user edit -z serviceaccount1
Options:
--role-namespace='': namespace where the role is located: empty means a role defined in cluster policy
-z, --serviceaccount=[]: service account in the current namespace to use as a user
|