Search Options

Results per page
Sort
Preferred Languages
Advance

Results 1 - 10 of 25 for SecurityContext (0.24 sec)

  1. pkg/apis/core/validation/validation.go

    	securityContext := spec.SecurityContext
    	// validate Pod SecurityContext
    	if securityContext != nil {
    		if securityContext.AppArmorProfile != nil {
    			allErrs = append(allErrs, field.Forbidden(fldPath.Child("securityContext").Child("appArmorProfile"), "cannot be set for a windows pod"))
    		}
    		if securityContext.SELinuxOptions != nil {
    Registered: Sat Jun 15 01:39:40 UTC 2024
    - Last Modified: Wed May 29 22:40:29 UTC 2024
    - 349.5K bytes
    - Viewed (1)
  2. pkg/apis/core/types.go

    	// - spec.securityContext.sysctls
    	// - spec.shareProcessNamespace
    	// - spec.securityContext.runAsUser
    	// - spec.securityContext.runAsGroup
    	// - spec.securityContext.supplementalGroups
    	// - spec.securityContext.supplementalGroupsPolicy
    	// - spec.containers[*].securityContext.appArmorProfile
    	// - spec.containers[*].securityContext.seLinuxOptions
    	// - spec.containers[*].securityContext.seccompProfile
    Registered: Sat Jun 15 01:39:40 UTC 2024
    - Last Modified: Wed May 29 22:40:29 UTC 2024
    - 268.9K bytes
    - Viewed (0)
  3. staging/src/k8s.io/api/core/v1/types_swagger_doc_generated.go

    - spec.securityContext.runAsGroup - spec.securityContext.supplementalGroups - spec.securityContext.supplementalGroupsPolicy - spec.containers[*].securityContext.appArmorProfile - spec.containers[*].securityContext.seLinuxOptions - spec.containers[*].securityContext.seccompProfile - spec.containers[*].securityContext.capabilities - spec.containers[*].securityContext.readOnlyRootFilesystem - spec.containers[*].securityContext.privileged - spec.containers[*].securityContext.allowPrivilegeEscalation...
    Registered: Sat Jun 15 01:39:40 UTC 2024
    - Last Modified: Wed May 29 22:40:29 UTC 2024
    - 254.8K bytes
    - Viewed (0)
  4. common-protos/k8s.io/api/core/v1/generated.proto

      // - spec.securityContext.runAsUser
      // - spec.securityContext.runAsGroup
      // - spec.securityContext.supplementalGroups
      // - spec.containers[*].securityContext.seLinuxOptions
      // - spec.containers[*].securityContext.seccompProfile
      // - spec.containers[*].securityContext.capabilities
      // - spec.containers[*].securityContext.readOnlyRootFilesystem
      // - spec.containers[*].securityContext.privileged
    Registered: Fri Jun 14 15:00:06 UTC 2024
    - Last Modified: Mon Mar 11 18:43:24 UTC 2024
    - 255.8K bytes
    - Viewed (0)
  5. staging/src/k8s.io/api/core/v1/generated.proto

      // - spec.securityContext.sysctls
      // - spec.shareProcessNamespace
      // - spec.securityContext.runAsUser
      // - spec.securityContext.runAsGroup
      // - spec.securityContext.supplementalGroups
      // - spec.securityContext.supplementalGroupsPolicy
      // - spec.containers[*].securityContext.appArmorProfile
      // - spec.containers[*].securityContext.seLinuxOptions
      // - spec.containers[*].securityContext.seccompProfile
    Registered: Sat Jun 15 01:39:40 UTC 2024
    - Last Modified: Wed May 29 22:40:29 UTC 2024
    - 280.3K bytes
    - Viewed (0)
  6. staging/src/k8s.io/api/core/v1/types.go

    	// - spec.securityContext.sysctls
    	// - spec.shareProcessNamespace
    	// - spec.securityContext.runAsUser
    	// - spec.securityContext.runAsGroup
    	// - spec.securityContext.supplementalGroups
    	// - spec.securityContext.supplementalGroupsPolicy
    	// - spec.containers[*].securityContext.appArmorProfile
    	// - spec.containers[*].securityContext.seLinuxOptions
    	// - spec.containers[*].securityContext.seccompProfile
    Registered: Sat Jun 15 01:39:40 UTC 2024
    - Last Modified: Wed May 29 22:40:29 UTC 2024
    - 390.8K bytes
    - Viewed (0)
  7. api/openapi-spec/v3/apis__batch__v1_openapi.json

    - spec.securityContext.runAsGroup - spec.securityContext.supplementalGroups - spec.securityContext.supplementalGroupsPolicy - spec.containers[*].securityContext.appArmorProfile - spec.containers[*].securityContext.seLinuxOptions - spec.containers[*].securityContext.seccompProfile - spec.containers[*].securityContext.capabilities - spec.containers[*].securityContext.readOnlyRootFilesystem - spec.containers[*].securityContext.privileged - spec.containers[*].securityContext.allowPrivilegeEscalation...
    Registered: Sat Jun 15 01:39:40 UTC 2024
    - Last Modified: Wed Jun 05 18:37:07 UTC 2024
    - 485.4K bytes
    - Viewed (0)
  8. pkg/apis/core/v1/zz_generated.conversion.go

    	}
    	if err := s.AddGeneratedConversionFunc((*v1.SecurityContext)(nil), (*core.SecurityContext)(nil), func(a, b interface{}, scope conversion.Scope) error {
    		return Convert_v1_SecurityContext_To_core_SecurityContext(a.(*v1.SecurityContext), b.(*core.SecurityContext), scope)
    	}); err != nil {
    		return err
    	}
    Registered: Sat Jun 15 01:39:40 UTC 2024
    - Last Modified: Wed May 29 22:40:29 UTC 2024
    - 472.1K bytes
    - Viewed (0)
  9. prow/config/calico.yaml

              volumeMounts:
                - mountPath: /var/lib/cni/networks
                  name: host-local-net-dir
                - mountPath: /host/opt/cni/bin
                  name: cni-bin-dir
              securityContext:
                privileged: true
            # This container installs the CNI binaries
            # and CNI network config file on each node.
            - name: install-cni
    Registered: Fri Jun 14 15:00:06 UTC 2024
    - Last Modified: Tue May 21 18:32:01 UTC 2024
    - 246.5K bytes
    - Viewed (0)
  10. CHANGELOG/CHANGELOG-1.25.md

    PodSecurity `restricted` level no longer requires pods that set .spec.os.name="windows" to also set Linux-specific securityContext fields. If a 1.25+ cluster has unsupported [out-of-skew](https://kubernetes.io/releases/version-skew-policy/#kubelet) nodes prior to v1.23 and wants to ensure namespaces enforcing the `restricted` policy continue to require Linux-specific securityContext fields on all pods, ensure a version of the `restricted` prior to v1.25 is selected by labeling the namespace (for...
    Registered: Sat Jun 15 01:39:40 UTC 2024
    - Last Modified: Mon May 06 09:23:20 UTC 2024
    - 419.1K bytes
    - Viewed (0)
Back to top