- Sort Score
- Result 10 results
- Languages All
Results 1 - 10 of 28 for fsGroup (0.2 sec)
-
releasenotes/notes/fsgroup.yaml
apiVersion: release-notes/v2 kind: feature area: installation issue: - 26882 releaseNotes: - | **Improved** sidecar injection to not modify the pod `securityPolicy.fsGroup` which could conflict with existing settings and secret mounts.
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Wed Sep 23 01:09:13 UTC 2020 - 338 bytes - Viewed (0) -
releasenotes/notes/drop-legacy-fsgroup-injection.yaml
John Howard <******@****.***> 1682631570 -0700
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Thu Apr 27 21:39:30 UTC 2023 - 227 bytes - Viewed (0) -
pkg/volume/volume_linux.go
) // SetVolumeOwnership modifies the given volume to be owned by // fsGroup, and sets SetGid so that newly created files are owned by // fsGroup. If fsGroup is nil nothing is done. func SetVolumeOwnership(mounter Mounter, dir string, fsGroup *int64, fsGroupChangePolicy *v1.PodFSGroupChangePolicy, completeFunc func(types.CompleteFuncParam)) error { if fsGroup == nil { return nil } timer := time.AfterFunc(30*time.Second, func() {
Registered: Sat Jun 15 01:39:40 UTC 2024 - Last Modified: Mon Apr 03 19:34:37 UTC 2023 - 6.5K bytes - Viewed (0) -
helm/minio/templates/securitycontextconstraints.yaml
allowedCapabilities: [] readOnlyRootFilesystem: false defaultAddCapabilities: [] requiredDropCapabilities: - KILL - MKNOD - SETUID - SETGID fsGroup: type: MustRunAs ranges: - max: {{ .Values.securityContext.fsGroup }} min: {{ .Values.securityContext.fsGroup }} runAsUser: type: MustRunAs uid: {{ .Values.securityContext.runAsUser }} seLinuxContext: type: MustRunAs supplementalGroups: type: RunAsAny
Registered: Sun Jun 16 00:44:34 UTC 2024 - Last Modified: Fri Aug 20 22:30:54 UTC 2021 - 1.1K bytes - Viewed (0) -
pkg/volume/local/local_linux_test.go
} fsGroup1 := int64(s.Gid) fsGroup2 := fsGroup1 + 1 pod1 := &v1.Pod{ObjectMeta: metav1.ObjectMeta{UID: types.UID("poduid")}} pod1.Spec.SecurityContext = &v1.PodSecurityContext{ FSGroup: &fsGroup1, } pod2 := &v1.Pod{ObjectMeta: metav1.ObjectMeta{UID: types.UID("poduid")}} pod2.Spec.SecurityContext = &v1.PodSecurityContext{ FSGroup: &fsGroup2, }
Registered: Sat Jun 15 01:39:40 UTC 2024 - Last Modified: Tue Aug 24 19:47:49 UTC 2021 - 2K bytes - Viewed (0) -
pkg/volume/flexvolume/mounter.go
os.Remove(dir) return err } // Implicit parameters if mounterArgs.FsGroup != nil { extraOptions[optionFSGroup] = strconv.FormatInt(int64(*mounterArgs.FsGroup), 10) } call.AppendSpec(f.spec, f.plugin.host, extraOptions) _, err = call.Run() if isCmdNotSupportedErr(err) {
Registered: Sat Jun 15 01:39:40 UTC 2024 - Last Modified: Mon Apr 03 19:34:37 UTC 2023 - 2.9K bytes - Viewed (0) -
pkg/volume/flexvolume/mounter_test.go
// first call without mounterArgs.FsGroup assertDriverCall(t, successOutput(), mountCmd, rootDir+"/mount-dir", specJSON(plugin, spec, map[string]string{ optionKeyPodName: "my-pod", optionKeyPodNamespace: "my-ns", optionKeyPodUID: "my-uid", optionKeyServiceAccountName: "my-sa", })), // second test has mounterArgs.FsGroup
Registered: Sat Jun 15 01:39:40 UTC 2024 - Last Modified: Thu Sep 17 04:51:24 UTC 2020 - 2.3K bytes - Viewed (0) -
staging/src/k8s.io/client-go/applyconfigurations/core/v1/podsecuritycontext.go
return b } // WithFSGroup sets the FSGroup field in the declarative configuration to the given value // and returns the receiver, so that objects can be built by chaining "With" function invocations. // If called multiple times, the FSGroup field is set to the value of the last call. func (b *PodSecurityContextApplyConfiguration) WithFSGroup(value int64) *PodSecurityContextApplyConfiguration { b.FSGroup = &value return b }
Registered: Sat Jun 15 01:39:40 UTC 2024 - Last Modified: Wed May 29 22:40:29 UTC 2024 - 8.1K bytes - Viewed (0) -
pkg/kube/inject/testdata/inject/explicit-security-context.yaml
app: hello spec: containers: - name: hello image: "fake.docker.io/google-samples/hello-go-gke:1.0" # We expect this to get overwritten to 1337 securityContext:
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Mon Dec 07 23:55:05 UTC 2020 - 379 bytes - Viewed (0) -
pkg/volume/flexvolume/driver-call.go
SupportsMetrics bool `json:"supportsMetrics"` FSGroup bool `json:"fsGroup"` RequiresFSResize bool `json:"requiresFSResize"` } func defaultCapabilities() *DriverCapabilities { return &DriverCapabilities{ Attach: true, SELinuxRelabel: true, SupportsMetrics: false, FSGroup: true, RequiresFSResize: true, } }
Registered: Sat Jun 15 01:39:40 UTC 2024 - Last Modified: Tue May 25 02:39:55 UTC 2021 - 7.5K bytes - Viewed (0)