Provision Azure Files ReadWriteMany Persistent Volumes on Azure OpenShift: Difference between revisions
Jump to navigation
Jump to search
Line 10: | Line 10: | ||
2. Give the OpenShift [[Azure_Security_Concepts#Service_Principal|service principal]] "listKey" permission on the new storage account resource group. Assign the "Contributor" role to achieve this. | 2. Give the OpenShift [[Azure_Security_Concepts#Service_Principal|service principal]] "listKey" permission on the new storage account resource group. Assign the "Contributor" role to achieve this. | ||
The OpenShift service principal can be obtained as described here: | The OpenShift service principal can be obtained as described here: {{Internal|OpenShift_on_Azure#Obtain_the_Service_Principal|Obtain the OpenShift cluster service principal}} |
Revision as of 20:34, 25 November 2020
External
Internal
Procedure
1. Create a storage account with its dedicated resource group. Why? Why can't we use the OpenShift cluster resource group?. Use this:
2. Give the OpenShift service principal "listKey" permission on the new storage account resource group. Assign the "Contributor" role to achieve this.
The OpenShift service principal can be obtained as described here: