{{ if .Values.rbac.create }} kind: ClusterRoleBinding apiVersion: rbac.authorization.k8s.io/v1 metadata: name: {{ .Release.Name }}-provisioner-runner subjects: - kind: ServiceAccount name: rook-nfs-server # replace with namespace where provisioner is deployed namespace: {{ .Release.Namespace }} roleRef: kind: ClusterRole name: rook-nfs-provisioner-runner apiGroup: rbac.authorization.k8s.io {{ end }}