promenade/charts/haproxy/templates
BARTRA, RICK 19169bb458 Run haproxy pod with the nobody user (65534)
To be able to run with the nobody user, an init container
is used in the haproxy-anchor pod to change the ownership and
permissions of '/host/etc/promenade/haproxy'. Security conext
was included in 'etc/kubernetes/manifests/haproxy.yaml' and
'promenade/schemas/Genesis.yaml' schema was updated to included
run_as_user property for haproxy pod.

Change-Id: Id248face0be43c417284ceb781997634a9c4dd5e
2019-09-11 16:18:30 -05:00
..
bin Run haproxy pod with the nobody user (65534) 2019-09-11 16:18:30 -05:00
etc Run haproxy pod with the nobody user (65534) 2019-09-11 16:18:30 -05:00
tests Add node selector to test pods 2019-06-21 10:04:38 -04:00
configmap-bin.yaml Run haproxy pod with the nobody user (65534) 2019-09-11 16:18:30 -05:00
configmap-etc.yaml Use HAProxy for apiserver discovery 2018-02-08 14:30:35 -06:00
daemonset.yaml Run haproxy pod with the nobody user (65534) 2019-09-11 16:18:30 -05:00
rbac.yaml Use HAProxy for apiserver discovery 2018-02-08 14:30:35 -06:00