Skip to content

Commit

Permalink
chore(ps): annotations
Browse files Browse the repository at this point in the history
Signed-off-by: Khaled Emara <mail@KhaledEmara.dev>
  • Loading branch information
KhaledEmaraDev committed Aug 12, 2024
1 parent 2716aae commit 986e765
Show file tree
Hide file tree
Showing 2 changed files with 7 additions and 7 deletions.
Original file line number Diff line number Diff line change
Expand Up @@ -7,11 +7,11 @@ metadata:
policies.kyverno.io/category: Pod Security Standards (Mutate)
policies.kyverno.io/severity: medium
policies.kyverno.io/subject: Pod
kyverno.io/kyverno-version: 1.6.0
kyverno.io/kubernetes-version: "1.22-1.30"
kyverno.io/kyverno-version: 1.12.5
kyverno.io/kubernetes-version: "1.30"
policies.kyverno.io/description: >-
Privilege escalation, such as via set-user-ID or set-group-ID file mode, should not be allowed.
This policy ensures the `allowPrivilegeEscalation` field is set to `false`.
This policy set the `allowPrivilegeEscalation` field to `false` if it's set to `true`.
spec:
validationFailureAction: Audit
background: true
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -7,11 +7,11 @@ metadata:
policies.kyverno.io/category: Pod Security Standards (Mutate)
policies.kyverno.io/severity: medium
policies.kyverno.io/subject: Pod
kyverno.io/kyverno-version: 1.6.0
kyverno.io/kubernetes-version: "1.22-1.30"
kyverno.io/kyverno-version: 1.12.5
kyverno.io/kubernetes-version: "1.30"
policies.kyverno.io/description: >-
Containers must be required to run as non-root users. This policy ensures
`runAsNonRoot` is set to `true`.
Containers must be required to run as non-root users. This policy sets
`runAsNonRoot` is set to `true` if it's set to `false`.
spec:
validationFailureAction: Audit
background: true
Expand Down

0 comments on commit 986e765

Please sign in to comment.