rancher / turtles

Rancher CAPI extension
https://turtles.docs.rancher.com
Apache License 2.0
51 stars 16 forks source link

Feasibility of Turtles with Hosted Rancher #739

Open mbologna opened 2 weeks ago

mbologna commented 2 weeks ago

Can Turtles be used with Hosted Rancher? Hosted Rancher users have less privileges than the users in Rancher.

We can test it at https://support.rancher.cloud/dashboard/auth/login and provide the answer to Camryn.

Danil-Grigorev commented 2 weeks ago

It seems that the imported hosted cluster is not available to explore. This blocks from attempting to install turtles, and the local cluster is not visible in this prime instance to debug more.

CamrynCarter commented 2 weeks ago

@Danil-Grigorev What if Turtles was already installed? Based on the RBAC, does it seem like provisioning with CAPI would be possible as a restricted admin (or equivalent permissions)? Let me know if getting a temporary environment with Turtles installed would help.

Danil-Grigorev commented 2 weeks ago

Having Turtles already installed would help. Since restricted admin can only access downstream clusters either should be true:

CamrynCarter commented 3 days ago

@Danil-Grigorev Can we proxy this using a regular Rancher instance that has Turtles installed and a restricted admin user instead of having a separate Hosted environment?