问题描述:User "system:serviceaccount:kc-app-tb-stable:helm-wrapper" cannot list resource "secrets" in API group "" in the namespace "kc-service-tb-stable-4a01655ecc1b4324bc897618209aa6c1"
解决办法:
1、kubectl create serviceaccount --namespace kc-app-tb-stable tiller
2、kubectl create clusterrolebinding system:serviceaccount:kc-app-tb-stable:helm-wrapper --clusterrole=cluster-admin --user=system:serviceaccount:kc-app-tb-stable:helm-wrapper
3、kubectl patch deploy --namespace kc-app-tb-stable tiller-deploy -p '{"spec":{"template":{"spec":{"serviceAccount":"tiller"}}}}'