---
kind: ClusterRoleBinding
apiVersion: rbac.authorization.k8s.io/v1
metadata:
  name: "{{ .ServiceAccount }}-role"
subjects:
  - kind: ServiceAccount
    name: "{{ .ServiceAccount }}"
    namespace: "{{ .Namespace }}"
roleRef:
  kind: ClusterRole
  name: nfs-external-provisioner-runner
  apiGroup: rbac.authorization.k8s.io