readOnlyFilesystem: true for ingress chart
Fix for adding readOnlyFilesystem flag at pod level Change-Id: Icc8fa3aae2d80e1038d7335af9a0a51885f9dad8
This commit is contained in:
parent
6ea80fa151
commit
9a34331bcf
@ -175,6 +175,8 @@ spec:
|
|||||||
{{ tuple $envAll "ingress" "server" | include "helm-toolkit.snippets.kubernetes_metadata_labels" | indent 8 }}
|
{{ tuple $envAll "ingress" "server" | include "helm-toolkit.snippets.kubernetes_metadata_labels" | indent 8 }}
|
||||||
app: ingress-api
|
app: ingress-api
|
||||||
spec:
|
spec:
|
||||||
|
securityContext:
|
||||||
|
readOnlyRootFilesystem: true
|
||||||
shareProcessNamespace: true
|
shareProcessNamespace: true
|
||||||
serviceAccountName: {{ $serviceAccountName }}
|
serviceAccountName: {{ $serviceAccountName }}
|
||||||
{{- if eq .Values.deployment.type "Deployment" }}
|
{{- if eq .Values.deployment.type "Deployment" }}
|
||||||
|
Loading…
x
Reference in New Issue
Block a user