From 947efaf2d7d62877f327e1f0600950b411cb2827 Mon Sep 17 00:00:00 2001 From: "Tim St. Clair" Date: Tue, 13 Jun 2017 18:34:19 -0700 Subject: [PATCH] Fix typos in audit policy config --- cluster/gce/gci/configure-helper.sh | 6 +++--- 1 file changed, 3 insertions(+), 3 deletions(-) diff --git a/cluster/gce/gci/configure-helper.sh b/cluster/gce/gci/configure-helper.sh index 06514cc5f78a..25167dea2b90 100644 --- a/cluster/gce/gci/configure-helper.sh +++ b/cluster/gce/gci/configure-helper.sh @@ -521,7 +521,7 @@ rules: # Ingress controller reads `configmaps/ingress-uid` through the unsecured port. # TODO(#46983): Change this to the ingress controller service account. users: ["system:unsecured"] - namespaces: ["kube-sytem"] + namespaces: ["kube-system"] verbs: ["get"] resources: - group: "" # core @@ -533,7 +533,7 @@ rules: - group: "" # core resources: ["nodes"] - level: None - groups: ["system:nodes"] + userGroups: ["system:nodes"] verbs: ["get"] resources: - group: "" # core @@ -544,7 +544,7 @@ rules: - system:kube-scheduler - system:serviceaccount:kube-system:endpoint-controller verbs: ["get", "update"] - namespaces: ["kube-sytem"] + namespaces: ["kube-system"] resources: - group: "" # core resources: ["endpoints"]