apiVersion: rbac.authorization.k8s.io/v1 kind: ClusterRole metadata: name: system:vsphere-cloud-provider rules: - apiGroups: - "" resources: - nodes verbs: - get - list - watch - apiGroups: - "" resources: - events verbs: - create - patch - update --- apiVersion: rbac.authorization.k8s.io/v1 kind: ClusterRoleBinding metadata: name: system:vsphere-cloud-provider roleRef: kind: ClusterRole name: system:vsphere-cloud-provider apiGroup: rbac.authorization.k8s.io subjects: - kind: ServiceAccount name: vsphere-cloud-provider namespace: kube-system