rbac: document resourceNames and note they can't be used for creates
This commit is contained in:
@@ -54,6 +54,7 @@ A request has the following attributes that can be considered for authorization:
|
||||
- what subresource is being accessed (for resource requests only)
|
||||
- the namespace of the object being accessed (for namespaced resource requests only)
|
||||
- the API group being accessed (for resource requests only); an empty string designates the [core API group](/docs/api/)
|
||||
- the name of the resource being accessed (only for resource requests using `get`, `update`, `patch`, and `delete` verbs)
|
||||
|
||||
The request verb for a resource API endpoint can be determined by the HTTP verb used and whether or not the request acts on an individual resource or a collection of resources:
|
||||
|
||||
|
||||
Reference in New Issue
Block a user