Skip to content

Commit

Permalink
feat: add seccompProfile (kedacore#3562)
Browse files Browse the repository at this point in the history
  • Loading branch information
joebowbeer authored and andyatwork committed Oct 31, 2022
1 parent 3f042bd commit d51b9e1
Show file tree
Hide file tree
Showing 3 changed files with 6 additions and 1 deletion.
1 change: 1 addition & 0 deletions CHANGELOG.md
Original file line number Diff line number Diff line change
Expand Up @@ -45,6 +45,7 @@ To learn more about active deprecations, we recommend checking [GitHub Discussio
### Improvements

- **Event Hubs Scaler:** Support Azure AD Pod & Workload Identity for Storage Blobs ([#3569](https://github.com/kedacore/keda/issues/3569))
- **General:** Add explicit seccompProfile type to securityContext config ([#3561](https://github.com/kedacore/keda/issues/3561))

### Fixes

Expand Down
2 changes: 2 additions & 0 deletions config/manager/manager.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -68,6 +68,8 @@ spec:
- ALL
allowPrivilegeEscalation: false
readOnlyRootFilesystem: true
seccompProfile:
type: RuntimeDefault
terminationGracePeriodSeconds: 10
nodeSelector:
kubernetes.io/os: linux
4 changes: 3 additions & 1 deletion config/metrics-server/deployment.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -70,8 +70,10 @@ spec:
drop:
- ALL
allowPrivilegeEscalation: false
## Metrics server needs to write the self-signed cert so it's not possible set this
## Metrics server needs to write the self-signed cert. See FAQ for discussion of options.
# readOnlyRootFilesystem: true
seccompProfile:
type: RuntimeDefault
nodeSelector:
kubernetes.io/os: linux
volumes:
Expand Down

0 comments on commit d51b9e1

Please sign in to comment.