Once any admin policy exists, PI enforces it for all admins. Without an explicit policy, pi-admin is locked out of the REST API after trigger-admin-rights is created. Add pi-admin-all-rights (scope=admin, action=*) via pi-manage (in-pod) as step 5, before the REST-based trigger-admin-rights step. Co-Authored-By: Claude Sonnet 4.6 <noreply@anthropic.com> |
||
|---|---|---|
| .. | ||
| bootstrap | ||
| k8s | ||
| WORKPLAN.md | ||