Less than 1 minute
# ClusterRoleBinding
apiVersion: rbac.authorization.k8s.io/v1
kind: ClusterRoleBinding
metadata:
name: read-secrets-global
subjects:
- kind: User
name: user2
namespace: default
roleRef:
kind: ClusterRole # 不支持 Role
name: secret-reader
apiGroup: rbac.authorization.k8s.io