Skip to content

Commit

Permalink
chore: Correct security context to use nonroot user (#5819)
Browse files Browse the repository at this point in the history
  • Loading branch information
jonathan-innis authored Mar 11, 2024
1 parent b112bc2 commit 9ac7285
Show file tree
Hide file tree
Showing 2 changed files with 3 additions and 3 deletions.
4 changes: 2 additions & 2 deletions charts/karpenter/templates/deployment.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -59,8 +59,8 @@ spec:
containers:
- name: controller
securityContext:
runAsUser: 65536
runAsGroup: 65536
runAsUser: 65532
runAsGroup: 65532
runAsNonRoot: true
seccompProfile:
type: RuntimeDefault
Expand Down
2 changes: 1 addition & 1 deletion charts/karpenter/values.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -46,7 +46,7 @@ podDisruptionBudget:
maxUnavailable: 1
# -- SecurityContext for the pod.
podSecurityContext:
fsGroup: 65536
fsGroup: 65532
# -- PriorityClass name for the pod.
priorityClassName: system-cluster-critical
# -- Override the default termination grace period for the pod.
Expand Down

0 comments on commit 9ac7285

Please sign in to comment.