The service account, cluster role and cluster role binding grant the
permissions required for the Vault installer pod to deploy the
Kubernetes resources that form Istio. They are provided with each
release.
These files are templated and must be amended before they are
applied.