Implement Security Context for Memcached

Implement a pod security context for the following Memcached resources:
 - Memcached server deployment

Change-Id: I8628ceb246e7c435a2ddd20bf1bcecd94db8ea26
This commit is contained in:
Cliff Parsons 2019-02-28 15:51:34 -06:00 committed by Chris Wedgwood
parent 8fb2c7f07c
commit 8bbe8452c2
2 changed files with 6 additions and 2 deletions

View File

@ -43,8 +43,7 @@ spec:
labels: labels:
{{ tuple $envAll "memcached" "server" | include "helm-toolkit.snippets.kubernetes_metadata_labels" | indent 8 }} {{ tuple $envAll "memcached" "server" | include "helm-toolkit.snippets.kubernetes_metadata_labels" | indent 8 }}
spec: spec:
securityContext: {{ dict "envAll" $envAll "application" "server" | include "helm-toolkit.snippets.kubernetes_pod_security_context" | indent 6 }}
readOnlyRootFilesystem: true
shareProcessNamespace: true shareProcessNamespace: true
serviceAccountName: {{ $rcControllerName | quote }} serviceAccountName: {{ $rcControllerName | quote }}
affinity: affinity:

View File

@ -147,6 +147,11 @@ pod:
user: user:
memcached_exporter: memcached_exporter:
uid: 65534 uid: 65534
server:
uid: 65534
securityContext:
server:
readOnlyRootFilesystem: true
affinity: affinity:
anti: anti:
topologyKey: topologyKey: