#!/bin/bash # Creates a restricted kubeconfig for the planner namespace only. # Run on the k8s server as a user with cluster-admin access. set -e NAMESPACE=planner SA_NAME=planner-deployer echo "Creating ServiceAccount, Role, and RoleBinding..." kubectl apply -f - < kubeconfig <