User future-hire@company.com ghost
Reach
Where this subject's permissions land. Cluster-wide grants reach every namespace; namespace-scoped grants are listed individually.
Cluster-wide (1)
| Role | Via | Binding |
|---|---|---|
| admin | direct | ClusterRoleBinding/ghost-future-employee |
Effective permissions (1 path)
Each path is one (role, scope, group-membership) combination. Click Show rules to see the underlying API rules.
Cluster-wide
User
future-hire@company.com
bound by
ClusterRoleBinding
ghost-future-employee
grants
Verbs:
*createdeletegetlistpatchupdatewatch
Resources:
configmapsdeploymentspodsrolebindingsrolessecrets
API groups:
apps, core, rbac.authorization.k8s.io
Aggregated from
admin-workloads, admin-rbac
User
future-hire@company.com
bound by
ClusterRoleBinding
ghost-future-employee
grants
| API group | Resources | Verbs | From |
|---|---|---|---|
| apps | deployments | * | admin-workloads |
| core | pods, secrets, configmaps | * | admin-workloads |
| rbac.authorization.k8s.io | roles, rolebindings | get, list, watch, create, update, patch, delete | admin-rbac |