ansible-role-k8s-storage/files/nfs/nfs-provisioner-PodSecurityPolicy.yaml
Adrien 7f0a136cf7
All checks were successful
continuous-integration/drone/push Build is passing
nfs-provisioner WIP
2020-07-12 00:49:52 +02:00

23 lines
392 B
YAML

apiVersion: extensions/v1beta1
kind: PodSecurityPolicy
metadata:
name: nfs-provisioner
spec:
fsGroup:
rule: RunAsAny
allowedCapabilities:
- DAC_READ_SEARCH
- SYS_RESOURCE
runAsUser:
rule: RunAsAny
seLinux:
rule: RunAsAny
supplementalGroups:
rule: RunAsAny
volumes:
- configMap
- downwardAPI
- emptyDir
- persistentVolumeClaim
- secret
- hostPath