UNCLASSIFIED - NO CUI

Skip to content

update minio secContext

Robert Massey requested to merge dropFix into main

General MR

Summary

Adds drop-all-capabilities to containerSecurityContext

Relevant logs/screenshots

default            13m         Warning   PolicyViolation                  clusterpolicy/require-drop-all-capabilities                        Pod logging/logging-loki-minio-ss-0-0: [drop-all-capabilities] fail (blocked); validation failure: Containers must drop all Linux capabilities by setting the fields spec.containers[*].securityContext.capabilities.drop, spec.initContainers[*].securityContext.capabilities.drop, and spec.ephemeralContainers[*].securityContext.capabilities.drop to `ALL`.

Linked Issue

issue

Upgrade Notices

N/A

Edited by Robert Massey

Merge request reports

Loading