{{- if .Values.rbac.create -}} apiVersion: rbac.authorization.k8s.io/v1 kind: RoleBinding metadata: {{- if .Values.customAnnotations }} annotations: {{- toYaml .Values.customAnnotations | nindent 4 }} {{- end }} labels: {{- include "k8s-prometheus-adapter.labels" . | indent 4 }} name: {{ template "k8s-prometheus-adapter.name" . }}-auth-reader namespace: kube-system roleRef: apiGroup: rbac.authorization.k8s.io kind: Role name: extension-apiserver-authentication-reader subjects: - kind: ServiceAccount name: {{ template "k8s-prometheus-adapter.serviceAccountName" . }} namespace: {{ include "k8s-prometheus-adapter.namespace" . | quote }} {{- end -}}