--- kind: ClusterRoleBinding apiVersion: rbac.authorization.k8s.io/v1 metadata: name: "{{ .ServiceAccount }}-role" subjects: - kind: ServiceAccount name: "{{ .ServiceAccount }}" namespace: "{{ .Namespace }}" roleRef: kind: ClusterRole name: nfs-external-provisioner-runner apiGroup: rbac.authorization.k8s.io