Skip to content

Expose Additional Security Context Settings in Helm Chart #329

@devopserio

Description

@devopserio

Hello,

I am trying to deploy the secrets-store-csi-driver-provider-aws Helm Chart in a Kubernetes cluster with restricted PodSecurityAdmission (PSA). To meet the requirements of the PSA, I need to adjust the securityContext of the pods deployed by this Helm release.

Currently, the Helm chart only exposes settings for securityContext.privileged and securityContext.allowPrivilegeEscalation. Could you add options for the following securityContext settings to the Helm chart?

  • securityContext.runAsNonRoot: true
  • securityContext.capabilities.drop: ["ALL"]
  • securityContext.seccompProfile.type: "RuntimeDefault"

These settings are required to meet the requirements of the restricted PSA. Your assistance in this matter would be greatly appreciated.

Thank you.

Metadata

Metadata

Assignees

No one assigned

    Labels

    enhancementNew feature or request

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions