@@ -679,16 +679,16 @@ podSecurityContext:
679
679
fsGroup : 1000
680
680
# # Configure Container Security Context (only main container)
681
681
# # ref: https://kubernetes.io/docs/tasks/configure-pod-container/security-context/#set-the-security-context-for-a-container
682
- # # @param containerSecurityContext .enabled Enabled containers' Security Context
683
- # # @param containerSecurityContext .seLinuxOptions [object,nullable] Set SELinux options in container
684
- # # @param containerSecurityContext .runAsUser Set containers' Security Context runAsUser
685
- # # @param containerSecurityContext .runAsGroup Set containers' Security Context runAsGroup
686
- # # @param containerSecurityContext .runAsNonRoot Set container's Security Context runAsNonRoot
687
- # # @param containerSecurityContext .privileged Set container's Security Context privileged
688
- # # @param containerSecurityContext .readOnlyRootFilesystem Set container's Security Context readOnlyRootFilesystem
689
- # # @param containerSecurityContext .allowPrivilegeEscalation Set container's Security Context allowPrivilegeEscalation
690
- # # @param containerSecurityContext .capabilities.drop List of capabilities to be dropped
691
- # # @param containerSecurityContext .seccompProfile.type Set container's Security Context seccomp profile
682
+ # # @param securityContext .enabled Enabled containers' Security Context
683
+ # # @param securityContext .seLinuxOptions [object,nullable] Set SELinux options in container
684
+ # # @param securityContext .runAsUser Set containers' Security Context runAsUser
685
+ # # @param securityContext .runAsGroup Set containers' Security Context runAsGroup
686
+ # # @param securityContext .runAsNonRoot Set container's Security Context runAsNonRoot
687
+ # # @param securityContext .privileged Set container's Security Context privileged
688
+ # # @param securityContext .readOnlyRootFilesystem Set container's Security Context readOnlyRootFilesystem
689
+ # # @param securityContext .allowPrivilegeEscalation Set container's Security Context allowPrivilegeEscalation
690
+ # # @param securityContext .capabilities.drop List of capabilities to be dropped
691
+ # # @param securityContext .seccompProfile.type Set container's Security Context seccomp profile
692
692
# #
693
693
securityContext :
694
694
enabled : true
@@ -990,13 +990,15 @@ init:
990
990
# # Init container' Security Context
991
991
# # Note: the chown of the data folder is done to securityContext.runAsUser
992
992
# # and not the below init.securityContext.runAsUser
993
+ # # @param init.securityContext.enabled Enabled containers' Security Context
993
994
# # @param init.securityContext.seLinuxOptions [object,nullable] Set SELinux options in container
994
995
# # @param init.securityContext.runAsUser User ID for the init container
995
996
# # @param init.securityContext.runAsGroup Group ID for the init container
996
997
# # @param init.securityContext.runAsNonRoot runAsNonRoot for the init container
997
998
# # @param init.securityContext.seccompProfile.type seccompProfile.type for the init container
998
999
# #
999
1000
securityContext :
1001
+ enabled : true
1000
1002
seLinuxOptions : {}
1001
1003
seccompProfile :
1002
1004
type : RuntimeDefault
@@ -1055,13 +1057,15 @@ test:
1055
1057
# # test container' Security Context
1056
1058
# # Note: the chown of the data folder is done to securityContext.runAsUser
1057
1059
# # and not the below test.securityContext.runAsUser
1060
+ # # @param test.securityContext.enabled Enabled containers' Security Context
1058
1061
# # @param test.securityContext.seLinuxOptions [object,nullable] Set SELinux options in container
1059
1062
# # @param test.securityContext.runAsUser User ID for the test container
1060
1063
# # @param test.securityContext.runAsGroup Group ID for the test container
1061
1064
# # @param test.securityContext.runAsNonRoot runAsNonRoot for the test container
1062
1065
# # @param test.securityContext.seccompProfile.type seccompProfile.type for the test container
1063
1066
# #
1064
1067
securityContext :
1068
+ enabled : false
1065
1069
seLinuxOptions : {}
1066
1070
seccompProfile :
1067
1071
type : RuntimeDefault
0 commit comments