- Sort Score
- Result 10 results
- Languages All
Results 131 - 140 of 330 for fsGroup (0.15 sec)
-
helm-releases/minio-5.2.0.tgz
false allowPrivilegeEscala: true allowPrivilegedConta: false allowedCapabilities: [] readOnlyRootFilesyst: false defaultAddCapabiliti: [] requiredDropCapabili: - KILL - MKNOD - SETUID - SETGID fsGroup: type: MustRunAs ranges: - max: {{ .Values.securityContext.fsGroup }} min: {{ .Values.securityContext.fsGroup }} runAsUser: type: MustRunAs uid: {{ .Values.securityContext.runAsUser }} seLinuxContext: type: MustRunAs supplementalGroups: type: RunAsAny volumes: - configMap - downwardAPI - emptyDir - persistentVolumeClai...
Registered: Sun Jun 16 00:44:34 UTC 2024 - Last Modified: Sun Apr 28 10:14:37 UTC 2024 - 21.7K bytes - Viewed (0) -
cluster/addons/dns/kube-dns/kube-dns.yaml.sed
spec: priorityClassName: system-cluster-critical securityContext: seccompProfile: type: RuntimeDefault supplementalGroups: [ 65534 ] fsGroup: 65534 affinity: podAntiAffinity: preferredDuringSchedulingIgnoredDuringExecution: - weight: 100 podAffinityTerm: labelSelector:
Registered: Sat Jun 15 01:39:40 UTC 2024 - Last Modified: Mon Jun 03 03:19:02 UTC 2024 - 7.1K bytes - Viewed (0) -
samples/addons/loki.yaml
app.kubernetes.io/part-of: memberlist spec: serviceAccountName: loki automountServiceAccountToken: true enableServiceLinks: true securityContext: fsGroup: 10001 runAsGroup: 10001 runAsNonRoot: true runAsUser: 10001 terminationGracePeriodSeconds: 30 containers: - name: loki image: docker.io/grafana/loki:3.0.0
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Wed Jun 12 18:57:35 UTC 2024 - 7.8K bytes - Viewed (0) -
staging/src/k8s.io/api/storage/v1beta1/types.go
// contains ReadWriteOnce, then the defined fsGroup will be applied. // This is the default behavior if no other FSGroupPolicy is defined. ReadWriteOnceWithFSTypeFSGroupPolicy FSGroupPolicy = "ReadWriteOnceWithFSType" // FileFSGroupPolicy indicates that CSI driver supports volume ownership // and permission change via fsGroup, and Kubernetes will change the permissions
Registered: Sat Jun 15 01:39:40 UTC 2024 - Last Modified: Mon Nov 27 20:06:32 UTC 2023 - 33.1K bytes - Viewed (0) -
pkg/volume/csi/csi_attacher.go
} if driverSupportsCSIVolumeMountGroup { klog.V(3).Infof("Driver %s supports applying FSGroup (has VOLUME_MOUNT_GROUP node capability). Delegating FSGroup application to the driver through NodeStageVolume.", csiSource.Driver) nodeStageFSGroupArg = deviceMounterArgs.FsGroup } fsType := csiSource.FSType err = csi.NodeStageVolume(ctx, csiSource.VolumeHandle, publishContext,
Registered: Sat Jun 15 01:39:40 UTC 2024 - Last Modified: Tue Oct 03 07:38:14 UTC 2023 - 25.9K bytes - Viewed (0) -
helm/minio/values.yaml
## user and group NOTE: securityContext is only enabled if persistence.enabled=true securityContext: enabled: true runAsUser: 1000 runAsGroup: 1000 fsGroup: 1000 fsGroupChangePolicy: "OnRootMismatch" readOnlyRootFilesystem: false # Additational pod annotations podAnnotations: {} # Additional pod labels podLabels: {}
Registered: Sun Jun 16 00:44:34 UTC 2024 - Last Modified: Sun Apr 28 10:14:37 UTC 2024 - 18.4K bytes - Viewed (1) -
pkg/volume/util/operationexecutor/operation_generator.go
volumeDeviceMounter, _ = deviceMountableVolumePlugin.NewDeviceMounter() } var fsGroup *int64 var fsGroupChangePolicy *v1.PodFSGroupChangePolicy if podSc := volumeToMount.Pod.Spec.SecurityContext; podSc != nil { if podSc.FSGroup != nil { fsGroup = podSc.FSGroup } if podSc.FSGroupChangePolicy != nil { fsGroupChangePolicy = podSc.FSGroupChangePolicy } }
Registered: Sat Jun 15 01:39:40 UTC 2024 - Last Modified: Tue May 14 06:17:25 UTC 2024 - 101.4K bytes - Viewed (0) -
pkg/volume/git_repo/git_repo.go
if output, err := b.execCommand("git", []string{"reset", "--hard"}, subdir); err != nil { return fmt.Errorf("failed to exec 'git reset --hard': %s: %v", output, err) } volume.SetVolumeOwnership(b, dir, mounterArgs.FsGroup, nil /*fsGroupChangePolicy*/, volumeutil.FSGroupCompleteHook(b.plugin, nil)) volumeutil.SetReady(b.getMetaDir()) return nil } func (b *gitRepoVolumeMounter) getMetaDir() string {
Registered: Sat Jun 15 01:39:40 UTC 2024 - Last Modified: Tue May 14 06:17:25 UTC 2024 - 8.2K bytes - Viewed (0) -
pkg/volume/csi/csi_block.go
csiSource.VolumeHandle, publishVolumeInfo, stagingPath, fsTypeBlockName, accessMode, nodeStageSecrets, csiSource.VolumeAttributes, nil, /* MountOptions */ nil /* fsGroup */) if err != nil { return "", err } klog.V(4).Infof(log("blockMapper.stageVolumeForBlock successfully requested NodeStageVolume [%s]", stagingPath)) return stagingPath, nil }
Registered: Sat Jun 15 01:39:40 UTC 2024 - Last Modified: Mon Sep 11 06:07:40 UTC 2023 - 20.1K bytes - Viewed (0) -
pkg/volume/secret/secret.go
// change the permissions on the whole volume and not only in the timestamp directory. return volume.SetVolumeOwnership(b, dir, mounterArgs.FsGroup, nil /*fsGroupChangePolicy*/, volumeutil.FSGroupCompleteHook(b.plugin, nil)) } err = writer.Write(payload, setPerms) if err != nil { klog.Errorf("Error writing payload to dir: %v", err) return err }
Registered: Sat Jun 15 01:39:40 UTC 2024 - Last Modified: Tue May 14 06:17:25 UTC 2024 - 9.1K bytes - Viewed (0)