File tree 3 files changed +12
-11
lines changed
3 files changed +12
-11
lines changed Original file line number Diff line number Diff line change 1
1
apiVersion : audit.k8s.io/v1
2
2
kind : Policy
3
3
rules :
4
- - level : Metadata
4
+ - level : Metadata
Original file line number Diff line number Diff line change 1
1
apiVersion : audit.k8s.io/v1 # This is required.
2
2
kind : Policy
3
3
omitStages :
4
- - " RequestReceived"
4
+ - " RequestReceived"
5
5
rules :
6
- - level : RequestResponse
7
- resources :
8
- - group : " "
9
- resources : ["pods"]
10
- - level : Metadata
11
- resources :
12
- - group : " " # core API group
13
- resources : ["secrets", "configmaps"]
6
+ - level : RequestResponse
7
+ resources :
8
+ - group : " "
9
+ resources : ["pods"]
10
+ - level : Metadata
11
+ resources :
12
+ - group : " " # core API group
13
+ resources : ["secrets", "configmaps"]
Original file line number Diff line number Diff line change @@ -3,7 +3,8 @@ kind: PodSecurityPolicy
3
3
metadata :
4
4
name : restricted
5
5
annotations :
6
- seccomp.security.alpha.kubernetes.io/allowedProfileNames : ' docker/default,runtime/default'
6
+ seccomp.security.alpha.kubernetes.io/allowedProfileNames : +
7
+ ' docker/default,runtime/default'
7
8
apparmor.security.beta.kubernetes.io/allowedProfileNames : ' runtime/default'
8
9
seccomp.security.alpha.kubernetes.io/defaultProfileName : ' runtime/default'
9
10
apparmor.security.beta.kubernetes.io/defaultProfileName : ' runtime/default'
You can’t perform that action at this time.
0 commit comments