Roll cephrgw-operator to v0.3.1 (CRD staleness warning)
ci/woodpecker/pr/pre-commit Pipeline was successful
ci/woodpecker/pr/kubeconform Pipeline was successful

cephrgw-operator v0.3.1 logs a startup warning when its installed CRDs are
missing or older than the operator (operator #6), which needs to read the
CustomResourceDefinition objects. Bump image and CRDs together and grant the
new RBAC.

- bump the operator image and the CRD install.yaml tag to v0.3.1
- add apiextensions.k8s.io/customresourcedefinitions get;list to the operator
  ClusterRole so the startup check is not RBAC-denied

Claude-Session: https://claude.ai/code/session_016CEncETbf8cvy1PhsHfFHM
This commit is contained in:
2026-07-25 23:01:08 +10:00
parent 9abb82afb4
commit 1a9740b0f7
3 changed files with 6 additions and 2 deletions
+1 -1
View File
@@ -24,7 +24,7 @@ spec:
runAsNonRoot: true
containers:
- name: operator
image: git.unkin.net/unkin/cephrgw-operator:v0.3.0
image: git.unkin.net/unkin/cephrgw-operator:v0.3.1
args:
- --metrics-bind-address=:8080
- --health-probe-bind-address=:8081
+1 -1
View File
@@ -6,7 +6,7 @@ resources:
- namespace.yaml
# CRDs are pulled from the cephrgw-operator repo at the matching tag rather
# than vendored here, so they never drift from the operator.
- https://git.unkin.net/unkin/cephrgw-operator/raw/tag/v0.3.0/config/crd/install.yaml
- https://git.unkin.net/unkin/cephrgw-operator/raw/tag/v0.3.1/config/crd/install.yaml
- rbac.yaml
- deployment.yaml
- vaultauth.yaml
+4
View File
@@ -23,6 +23,10 @@ rules:
- apiGroups: ["coordination.k8s.io"]
resources: ["leases"]
verbs: ["get", "list", "watch", "create", "update", "patch", "delete"]
# v0.3.1 startup check reads its own CRDs to warn if they are stale/missing.
- apiGroups: ["apiextensions.k8s.io"]
resources: ["customresourcedefinitions"]
verbs: ["get", "list"]
---
apiVersion: rbac.authorization.k8s.io/v1
kind: ClusterRoleBinding