--- apiVersion: v1 kind: ServiceAccount metadata: name: q3-deploy namespace: q3 --- apiVersion: rbac.authorization.k8s.io/v1 kind: Role metadata: name: q3-deploy-role namespace: q3 # Should be namespace you are granting access to rules: - apiGroups: ["*"] resources: ["*"] verbs: ["*"] --- apiVersion: rbac.authorization.k8s.io/v1 kind: RoleBinding metadata: name: q3-rolebinding namespace: q3 roleRef: apiGroup: rbac.authorization.k8s.io kind: Role name: q3-deploy-role subjects: - namespace: q3 kind: ServiceAccount name: q3-deploy