We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Currently it seems that
capabilites: drop: - ALL
is missing from the container security context. If the container does not require those capabilities, would it be possible to drop them by default?
When would you use this?
If this is implemented by default I believe that it would increase the security posture of every cluster that uses this.
Message from the maintainers:
Impacted by this bug? Give it a 👍. We prioritise the issues with the most 👍.
The text was updated successfully, but these errors were encountered:
fix: Update to latest version of golang 1.17 (argoproj-labs#27)
fac39a9
Signed-off-by: Mihir Shah <[email protected]>
No branches or pull requests
Summary
Currently it seems that
is missing from the container security context. If the container does not require those capabilities, would it be possible to drop them by default?
Use Cases
When would you use this?
If this is implemented by default I believe that it would increase the security posture of every cluster that uses this.
Message from the maintainers:
Impacted by this bug? Give it a 👍. We prioritise the issues with the most 👍.
The text was updated successfully, but these errors were encountered: