Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Derive and set pod security policies as best practice #395

Open
marcinc opened this issue Mar 8, 2021 · 0 comments
Open

Derive and set pod security policies as best practice #395

marcinc opened this issue Mar 8, 2021 · 0 comments
Labels
enhancement New feature or request

Comments

@marcinc
Copy link
Contributor

marcinc commented Mar 8, 2021

Consider Dockerfile UID/GID extraction for automated workloads pod security policy configuration, or when not possible, default to nobody UID/GID with relevant message to the user with suggestions.

These could be instructions on how to defined and use non root user / group, or how to migrate to another base image that supports that model out of the box.

@marcinc marcinc self-assigned this Apr 9, 2021
@marcinc marcinc changed the title Derive pod security policies Derive and set pod security policies as best practice Apr 9, 2021
@marcinc marcinc added the enhancement New feature or request label Jul 7, 2021
@marcinc marcinc removed their assignment Jul 7, 2021
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
enhancement New feature or request
Projects
None yet
Development

No branches or pull requests

1 participant