Step: ocm-ci-rbac

This workflow adds the necessary privileges to the Prow job's namespace so that images can be accessed outside the Prow clusters.

Container image used for this step: open-cluster-management/builder:go1.16-linux

open-cluster-management/builder:go1.16-linux resolves to an image imported from the specified imagestream tag on the build farm (documentation).

Environment

Step exposes no environmental variables except the defaults.

Source Code

1
2
3
4
#!/bin/bash

oc adm policy add-role-to-group system:image-puller system:authenticated --namespace "${NAMESPACE}"
oc adm policy add-role-to-group system:image-puller system:unauthenticated --namespace "${NAMESPACE}"

Properties

Property Value Description
Resource requests (cpu) 100m Used in .resources.requests of the pod running this step.
Resource requests (memory) 100Mi Used in .resources.requests of the pod running this step.

GitHub Link:

https://github.com/openshift/release/blob/master/ci-operator/step-registry/ocm/ci/rbac/ocm-ci-rbac-ref.yaml

Owners:

Approvers:

Source code for this page located on GitHub