From 3978c6a33c928944df2145236d893d22696c3338 Mon Sep 17 00:00:00 2001 From: Rahul Khiyani Date: Wed, 29 Jul 2020 13:09:08 +0000 Subject: [PATCH] Revert "Add missing pod level security context template for mariadb-backup" Reverting this change as the health checks are failing with permission denied. Need to dig more and do through testing. This reverts commit 0da55ad85ef621baa22887799e3146cecd93d368. Change-Id: I9de78186a2c3a6d181bedfdb8b84abeecce46bd6 --- mariadb/templates/cron-job-backup-mariadb.yaml | 1 - mariadb/values.yaml | 1 + 2 files changed, 1 insertion(+), 1 deletion(-) diff --git a/mariadb/templates/cron-job-backup-mariadb.yaml b/mariadb/templates/cron-job-backup-mariadb.yaml index c9133034a2..c34263ad2c 100644 --- a/mariadb/templates/cron-job-backup-mariadb.yaml +++ b/mariadb/templates/cron-job-backup-mariadb.yaml @@ -49,7 +49,6 @@ spec: labels: {{ tuple $envAll "mariadb-backup" "backup" | include "helm-toolkit.snippets.kubernetes_metadata_labels" | indent 12 }} spec: -{{ dict "envAll" $envAll "application" "mariadb_backup" | include "helm-toolkit.snippets.kubernetes_pod_security_context" | indent 10 }} serviceAccountName: {{ $serviceAccountName }} restartPolicy: OnFailure nodeSelector: diff --git a/mariadb/values.yaml b/mariadb/values.yaml index b5b6dfe27b..18de2ee5f9 100644 --- a/mariadb/values.yaml +++ b/mariadb/values.yaml @@ -117,6 +117,7 @@ pod: runAsUser: 0 readOnlyRootFilesystem: true mariadb_backup: + runAsUser: 65534 readOnlyRootFilesystem: true allowPrivilegeEscalation: false tests: