From 64ac469eb662f9e7ff39915c7b3921bc764caa94 Mon Sep 17 00:00:00 2001 From: diwakar thyagaraj Date: Fri, 8 May 2020 17:24:01 +0000 Subject: [PATCH] Enable Apparmor to Prometheus-init-containers Change-Id: Ibea27338437c9c039b10bff02a28d60d3f5cf4b1 Signed-off-by: diwakar thyagaraj --- prometheus/templates/statefulset.yaml | 2 +- prometheus/values_overrides/apparmor.yaml | 3 ++- 2 files changed, 3 insertions(+), 2 deletions(-) diff --git a/prometheus/templates/statefulset.yaml b/prometheus/templates/statefulset.yaml index 3803544e51..11fb218043 100644 --- a/prometheus/templates/statefulset.yaml +++ b/prometheus/templates/statefulset.yaml @@ -87,7 +87,7 @@ spec: {{ tuple $envAll | include "helm-toolkit.snippets.release_uuid" | indent 8 }} configmap-bin-hash: {{ tuple "configmap-bin.yaml" . | include "helm-toolkit.utils.hash" }} configmap-etc-hash: {{ tuple "configmap-etc.yaml" . | include "helm-toolkit.utils.hash" }} -{{ dict "envAll" $envAll "podName" "prometheus" "containerNames" (list "prometheus" "prometheus-perms" "apache-proxy") | include "helm-toolkit.snippets.kubernetes_mandatory_access_control_annotation" | indent 8 }} +{{ dict "envAll" $envAll "podName" "prometheus" "containerNames" (list "prometheus" "prometheus-perms" "apache-proxy" "init") | include "helm-toolkit.snippets.kubernetes_mandatory_access_control_annotation" | indent 8 }} spec: {{ dict "envAll" $envAll "application" "api" | include "helm-toolkit.snippets.kubernetes_pod_security_context" | indent 6 }} serviceAccountName: {{ $rcControllerName | quote }} diff --git a/prometheus/values_overrides/apparmor.yaml b/prometheus/values_overrides/apparmor.yaml index 236effcd3a..b7a913872c 100644 --- a/prometheus/values_overrides/apparmor.yaml +++ b/prometheus/values_overrides/apparmor.yaml @@ -4,4 +4,5 @@ pod: prometheus: prometheus: runtime/default prometheus-perms: runtime/default - apache-proxy: runtime/default \ No newline at end of file + apache-proxy: runtime/default + init: runtime/default \ No newline at end of file