Use ace-user-roles v2026.6.12 with audit cluster role#565
Merged
Conversation
Bumps the ace-user-roles dep to v2026.6.12 and enables the new enableClusterRoles.audit flag wherever enableClusterRoles.license-proxyserver is true, so stash operators get the RBAC to request audit NATS credentials via the identity.k8s.appscode.com extended API fallback. Signed-off-by: Tamal Saha <tamal@appscode.com>
- Bumps kubeops.dev/installer to f8eed8b (release v2026.6.12) so the vendored UserClusterRoles type includes the new Audit field. - Runs make gen + make fmt to regenerate CRDs, schemas, and chart READMEs. - Refreshes Chart.lock for stash and stash-opscenter to pin ace-user-roles v2026.6.12. Signed-off-by: Tamal Saha <tamal@appscode.com>
4c1c608 to
5f0926b
Compare
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Summary
enableClusterRoles.auditwhereverenableClusterRoles.license-proxyserveris true, so stash operators get the RBAC to request audit NATS credentials via the new identity API fallbackTest plan
helm dep updatesucceeds against the new ace-user-roles version