apiVersion: kyverno.io/v1 kind: ClusterPolicy metadata: name: sync-prod-archmeister-replication-secrets spec: background: true generateExisting: true rules: - name: sync-archmeister-ca generate: apiVersion: v1 kind: Secret name: prod-archmeister-ca namespace: '{{request.object.metadata.name}}' synchronize: true clone: namespace: atlantis name: prod-archmeister-ca match: resources: kinds: - Namespace names: - '*-vcluster' - name: sync-archmeister-replication generate: apiVersion: v1 kind: Secret name: prod-archmeister-replication namespace: '{{request.object.metadata.name}}' synchronize: true clone: namespace: atlantis name: prod-archmeister-replication match: resources: kinds: - Namespace names: - '*-vcluster'