Skip to content

Commit

Permalink
[charts/*] set allowPrivilegeEscalation to false by default
Browse files Browse the repository at this point in the history
Signed-off-by: Markus Blaschke <[email protected]>
  • Loading branch information
mblaschke committed Oct 23, 2023
1 parent 8fe8c57 commit 9e51026
Show file tree
Hide file tree
Showing 18 changed files with 18 additions and 9 deletions.
2 changes: 1 addition & 1 deletion charts/azure-janitor/Chart.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -3,7 +3,7 @@ name: azure-janitor
type: application
description: A Helm chart for azure-janitor
home: https://github.com/webdevops/azure-janitor
version: 1.0.8
version: 1.0.9
# renovate: image=webdevops/azure-janitor
appVersion: 22.9.0
keywords:
Expand Down
1 change: 1 addition & 0 deletions charts/azure-janitor/values.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -97,6 +97,7 @@ securityContext:
containerSecurityContext:
readOnlyRootFilesystem: true
runAsNonRoot: true
allowPrivilegeEscalation: false
capabilities:
drop: ["ALL"]

Expand Down
2 changes: 1 addition & 1 deletion charts/azure-keyvault-exporter/Chart.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -3,7 +3,7 @@ name: azure-keyvault-exporter
type: application
description: A Helm chart for azure-keyvault-exporter
home: https://github.com/webdevops/azure-keyvault-exporter
version: 1.0.7
version: 1.0.8
# renovate: image=webdevops/azure-keyvault-exporter
appVersion: 23.7.1
keywords:
Expand Down
1 change: 1 addition & 0 deletions charts/azure-keyvault-exporter/values.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -94,6 +94,7 @@ securityContext:
containerSecurityContext:
readOnlyRootFilesystem: true
runAsNonRoot: true
allowPrivilegeEscalation: false
capabilities:
drop: ["ALL"]

Expand Down
2 changes: 1 addition & 1 deletion charts/azure-loganalytics-exporter/Chart.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -3,7 +3,7 @@ name: azure-loganalytics-exporter
type: application
description: A Helm chart for azure-loganalytics-exporter
home: https://github.com/webdevops/azure-loganalytics-exporter
version: 1.0.4
version: 1.0.5
# renovate: image=webdevops/azure-loganalytics-exporter
appVersion: 23.6.0
keywords:
Expand Down
1 change: 1 addition & 0 deletions charts/azure-loganalytics-exporter/values.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -139,6 +139,7 @@ securityContext:
containerSecurityContext:
readOnlyRootFilesystem: true
runAsNonRoot: true
allowPrivilegeEscalation: false
capabilities:
drop: ["ALL"]

Expand Down
2 changes: 1 addition & 1 deletion charts/azure-metrics-exporter/Chart.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -3,7 +3,7 @@ name: azure-metrics-exporter
type: application
description: A Helm chart for azure-metrics-exporter
home: https://github.com/webdevops/azure-metrics-exporter
version: 1.0.8
version: 1.0.9
# renovate: image=webdevops/azure-metrics-exporter
appVersion: 23.7.0
keywords:
Expand Down
1 change: 1 addition & 0 deletions charts/azure-metrics-exporter/values.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -94,6 +94,7 @@ securityContext:
containerSecurityContext:
readOnlyRootFilesystem: true
runAsNonRoot: true
allowPrivilegeEscalation: false
capabilities:
drop: ["ALL"]

Expand Down
2 changes: 1 addition & 1 deletion charts/azure-resourcegraph-exporter/Chart.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -3,7 +3,7 @@ name: azure-resourcegraph-exporter
type: application
description: A Helm chart for azure-resourcegraph-exporter
home: https://github.com/webdevops/azure-resourcegraph-exporter
version: 1.0.3
version: 1.0.4
# renovate: image=webdevops/azure-resourcegraph-exporter
appVersion: 23.6.0
keywords:
Expand Down
1 change: 1 addition & 0 deletions charts/azure-resourcegraph-exporter/values.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -143,6 +143,7 @@ securityContext:
containerSecurityContext:
readOnlyRootFilesystem: true
runAsNonRoot: true
allowPrivilegeEscalation: false
capabilities:
drop: ["ALL"]

Expand Down
2 changes: 1 addition & 1 deletion charts/azure-resourcemanager-exporter/Chart.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -3,7 +3,7 @@ name: azure-resourcemanager-exporter
type: application
description: A Helm chart for azure-resourcemanager-exporter
home: https://github.com/webdevops/azure-resourcemanager-exporter
version: 1.2.2
version: 1.2.3
# renovate: image=webdevops/azure-resourcemanager-exporter
appVersion: 23.6.1
keywords:
Expand Down
1 change: 1 addition & 0 deletions charts/azure-resourcemanager-exporter/values.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -97,6 +97,7 @@ securityContext:
containerSecurityContext:
readOnlyRootFilesystem: true
runAsNonRoot: true
allowPrivilegeEscalation: false
capabilities:
drop: ["ALL"]

Expand Down
2 changes: 1 addition & 1 deletion charts/azure-scheduledevents-manager/Chart.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -3,7 +3,7 @@ name: azure-scheduledevents-manager
type: application
description: A Helm chart for azure-scheduledevents-manager
home: https://github.com/webdevops/azure-scheduledevents-manager
version: 1.0.12
version: 1.0.13
# renovate: image=webdevops/azure-scheduledevents-exporter
appVersion: 23.6.0
keywords:
Expand Down
1 change: 1 addition & 0 deletions charts/azure-scheduledevents-manager/values.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -91,6 +91,7 @@ securityContext:
containerSecurityContext:
readOnlyRootFilesystem: true
runAsNonRoot: true
allowPrivilegeEscalation: false
capabilities:
drop: ["ALL"]

Expand Down
2 changes: 1 addition & 1 deletion charts/kube-pool-manager/Chart.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -3,7 +3,7 @@ name: kube-pool-manager
type: application
description: A Helm chart for kube-pool-manager
home: https://github.com/webdevops/kube-pool-manager
version: 1.0.11
version: 1.0.12
# renovate: image=webdevops/kube-pool-manager
appVersion: 23.6.0
keywords:
Expand Down
1 change: 1 addition & 0 deletions charts/kube-pool-manager/values.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -96,6 +96,7 @@ securityContext:
containerSecurityContext:
readOnlyRootFilesystem: true
runAsNonRoot: true
allowPrivilegeEscalation: false
capabilities:
drop: ["ALL"]

Expand Down
2 changes: 1 addition & 1 deletion charts/pagerduty-exporter/Chart.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -3,7 +3,7 @@ name: pagerduty-exporter
type: application
description: A Helm chart for pagerduty-exporter
home: https://github.com/webdevops/pagerduty-exporter
version: 1.1.2
version: 1.1.3
# renovate: image=webdevops/pagerduty-exporter
appVersion: 22.12.0
keywords:
Expand Down
1 change: 1 addition & 0 deletions charts/pagerduty-exporter/values.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -93,6 +93,7 @@ securityContext:
containerSecurityContext:
readOnlyRootFilesystem: true
runAsNonRoot: true
allowPrivilegeEscalation: false
capabilities:
drop: ["ALL"]

Expand Down

0 comments on commit 9e51026

Please sign in to comment.