apiVersion: rbac.authorization.k8s.io/v1 kind: ClusterRoleBinding metadata: name: cluster-readonly subjects: - kind: Group name: user apiGroup: "" roleRef: kind: ClusterRole name: cluster-readonly apiGroup: ""