Merge pull request #2422 from philipgough/ci-fix

ci: Add runAsGroup for blackbox exporter containers
This commit is contained in:
Kemal Akkoyun
2024-05-13 11:33:53 +02:00
committed by GitHub
2 changed files with 4 additions and 0 deletions

View File

@@ -183,6 +183,7 @@ function(params) {
} else {
runAsNonRoot: true,
runAsUser: 65534,
runAsGroup: 65534,
allowPrivilegeEscalation: false,
readOnlyRootFilesystem: true,
capabilities: { drop: ['ALL'] },
@@ -205,6 +206,7 @@ function(params) {
securityContext: {
runAsNonRoot: true,
runAsUser: 65534,
runAsGroup: 65534,
allowPrivilegeEscalation: false,
readOnlyRootFilesystem: true,
capabilities: { drop: ['ALL'] },

View File

@@ -48,6 +48,7 @@ spec:
drop:
- ALL
readOnlyRootFilesystem: true
runAsGroup: 65534
runAsNonRoot: true
runAsUser: 65534
volumeMounts:
@@ -72,6 +73,7 @@ spec:
drop:
- ALL
readOnlyRootFilesystem: true
runAsGroup: 65534
runAsNonRoot: true
runAsUser: 65534
terminationMessagePath: /dev/termination-log