This is an example of Create a ClusterRoleBinding to allow a default service account to use a gMSA credential specification cluster-wide.
VMware vSphere Kubernetes Service
Create a ClusterRoleBinding to allow a default service account to use a gMSA credential specification cluster-wide.
apiVersion: rbac.authorization.k8s.io/v1kind: ClusterRoleBindingmetadata:name: allow-default-svc-account-read-on-myservice-gmssasubjects:- kind: Groupname: system:serviceaccountsapiGroup: rbac.authorization.k8s.ioroleRef:kind: ClusterRolename: myservice-gmsaapiGroup: rbac.authorization.k8s.io
Create a role binding in the workload namespace:
RoleBindings and ClusterRoleBinding: