forked from rook/rook
The object user was previously required to be created in the same namespace as the object store and the cluster. Now, the object user can be reconciled even in a different namespace from the cluster and object store. The namespace would be specified in the object user CR. Signed-off-by: travisn <tnielsen@redhat.com>
30 lines
1.0 KiB
YAML
30 lines
1.0 KiB
YAML
#################################################################################################################
|
|
# Create an object store user for access to the s3 endpoint.
|
|
# kubectl create -f object-user.yaml
|
|
#################################################################################################################
|
|
|
|
apiVersion: ceph.rook.io/v1
|
|
kind: CephObjectStoreUser
|
|
metadata:
|
|
name: my-user
|
|
namespace: rook-ceph # namespace:cluster
|
|
spec:
|
|
store: my-store
|
|
displayName: "my display name"
|
|
# Quotas set on the user
|
|
# quotas:
|
|
# maxBuckets: 100
|
|
# maxSize: 10G
|
|
# maxObjects: 10000
|
|
# Additional permissions given to the user
|
|
# capabilities:
|
|
# user: "*"
|
|
# bucket: "*"
|
|
# metadata: "*"
|
|
# usage: "*"
|
|
# zone: "*"
|
|
# If the CephObjectStoreUser is created in a namespace other than the Rook cluster namespace,
|
|
# specify the namespace where the cluster and object store are found.
|
|
# "allowUsersInNamespaces" must include this namespace to enable this feature.
|
|
# clusterNamespace: rook-ceph
|