From 0da55ad85ef621baa22887799e3146cecd93d368 Mon Sep 17 00:00:00 2001 From: "KHIYANI, RAHUL (rk0850)" Date: Mon, 20 Jul 2020 10:08:03 -0500 Subject: [PATCH] Add missing pod level security context template for mariadb-backup This change adds security-context template at pod level and also it removes duplicate run as user value for mariadb-backup container as it's already given at pod level Change-Id: I01da9d1b5a2b8d44f4bbf52e15842e2316c6086c --- mariadb/templates/cron-job-backup-mariadb.yaml | 1 + mariadb/values.yaml | 1 - 2 files changed, 1 insertion(+), 1 deletion(-) diff --git a/mariadb/templates/cron-job-backup-mariadb.yaml b/mariadb/templates/cron-job-backup-mariadb.yaml index 80ecdfa2e..165e1535e 100644 --- a/mariadb/templates/cron-job-backup-mariadb.yaml +++ b/mariadb/templates/cron-job-backup-mariadb.yaml @@ -49,6 +49,7 @@ spec: labels: {{ tuple $envAll "mariadb-backup" "backup" | include "helm-toolkit.snippets.kubernetes_metadata_labels" | indent 12 }} spec: +{{ dict "envAll" $envAll "application" "mariadb_backup" | include "helm-toolkit.snippets.kubernetes_pod_security_context" | indent 10 }} serviceAccountName: {{ $serviceAccountName }} restartPolicy: OnFailure nodeSelector: diff --git a/mariadb/values.yaml b/mariadb/values.yaml index 18de2ee5f..b5b6dfe27 100644 --- a/mariadb/values.yaml +++ b/mariadb/values.yaml @@ -117,7 +117,6 @@ pod: runAsUser: 0 readOnlyRootFilesystem: true mariadb_backup: - runAsUser: 65534 readOnlyRootFilesystem: true allowPrivilegeEscalation: false tests: