drift corrections on rancher-roles-management
I have observed this in https://gitlab.com/sylva-projects/sylva-core/-/jobs/12928915516:
🔹 rancher-cluster-role-bindings
🔄 [2026-01-30T13:21:20.246Z] ClusterRoleTemplateBinding/c-dg7lc/grb-c-dg7lc-role4-infra-standard-users changed (1 additions, 0 changes, 0 removals)","type":"Warning","object":{"kind":"HelmRelease","namespace":"rke2-capm3-virt","name":"rancher-cluster-role-bindings","uid":"f39687c6-b9d2-4152-b137-14294a185026","apiVersion":"helm.toolkit.fluxcd.io/v2","resourceVersion":"128304"},"reason":"DriftDetected}
🔧 Patches applied:
- [2026-01-30T13:21:20.246Z] ClusterRoleTemplateBinding/c-dg7lc/grb-c-dg7lc-role4-infra-standard-users ->
[
{
"value": "true",
"op": "add",
"path": "/metadata/annotations/lifecycle.cattle.io~1create.cluster-crtb-sync_c-dg7lc"
}
]
This is a new drift, additional to the one addressed by !6723 (merged).
In fact, those CRDs have many labels/annotations so we'll have to extend the ignore list.
(I've removed the Helm labels & annotations from the output below)
apiVersion: management.cattle.io/v3
kind: ClusterRoleTemplateBinding
metadata:
annotations:
lifecycle.cattle.io/create.cluster-crtb-sync_c-77bb2: "true"
lifecycle.cattle.io/create.mgmt-auth-crtb-controller: "true"
#...
creationTimestamp: "2025-12-17T10:59:13Z"
labels:
#...
auth.management.cattle.io/crb-rb-labels-updated: "true"
authz.cluster.cattle.io/crb-rb-labels-updated: "true"
#...
Edited by Thomas Morin