Yes, thanks it's that:

$ oc adm policy add-cluster-role-to-user system:image-pruner
system:serviceaccount:default:pruner
# oadm --token=`oc sa get-token pruner` prune images --confirm

but now I've:

error: error communicating with registry: Get
http://172.30.154.75:5000/healthz: dial tcp 172.30.154.75:5000: i/o timeout

2016-11-16 17:54 GMT+01:00 Jordan Liggitt <jligg...@redhat.com>:

> When granting the cluster role, the username for the service account is
> not "pruner", it is "system:serviceaccount:default:pruner"
>
> On Nov 16, 2016, at 11:29 AM, Stéphane Klein <cont...@stephane-klein.info>
> wrote:
>
> Hi,
>
> oc adm policy add-cluster-role-to-user system:image-pruner pruner
>
> oadm --token=`oc sa get-token pruner` prune images --confirm
> Error from server: User "system:serviceaccount:default:pruner" cannot
> list all images in the cluster
>
> What role I forget to grant to pruner ServiceAccount ?
>
> Best regards,
> Stéphane
> --
> Stéphane Klein <cont...@stephane-klein.info>
> blog: http://stephane-klein.info
> cv : http://cv.stephane-klein.info
> Twitter: http://twitter.com/klein_stephane
>
> _______________________________________________
> users mailing list
> users@lists.openshift.redhat.com
> http://lists.openshift.redhat.com/openshiftmm/listinfo/users
>
>


-- 
Stéphane Klein <cont...@stephane-klein.info>
blog: http://stephane-klein.info
cv : http://cv.stephane-klein.info
Twitter: http://twitter.com/klein_stephane
_______________________________________________
users mailing list
users@lists.openshift.redhat.com
http://lists.openshift.redhat.com/openshiftmm/listinfo/users

Reply via email to