Changed
Drop all CAPabilities
in container SecurityContext for Kyverno Policy compliance- Set
AllowPrivilegeEscalation=false
in container SecurityContext for Kyverno Policy compliance
Drop all CAPabilities
in container SecurityContext for Kyverno Policy complianceAllowPrivilegeEscalation=false
in container SecurityContext for Kyverno Policy complianceprojected
volume type to csi-node PSP to allow the user of IRSA.openstack-app-collection
.template nodepool
.spec.config.configMap
in app/<cluster-name>-default-apps
for CAPZ
clusters.openstack-app-collection
.gin
to v1.9.0
read-all
clusterRole to append pods/log
policy rule onceThis part of our documentation refers to our vintage product. The content may be not valid anymore for our current product. Please check our new documentation hub for the latest state of our docs.