Skip to content

Commit 087d766

Browse files
committed
UPSTREAM: <carry>: Remove write permissions on daemonsets from Kubernetes bootstrap policy
Due to how daemonsets interact with the project node selector, we need to limit write access to them to the cluster admin. Bug 1536304 Bug 1501514 Signed-off-by: Monis Khan <[email protected]>
1 parent b1e22b3 commit 087d766

File tree

2 files changed

+38
-8
lines changed

2 files changed

+38
-8
lines changed

Diff for: vendor/k8s.io/kubernetes/plugin/pkg/auth/authorizer/rbac/bootstrappolicy/policy.go

+6-4
Some generated files are not rendered by default. Learn more about customizing how changed files appear on GitHub.

Diff for: vendor/k8s.io/kubernetes/plugin/pkg/auth/authorizer/rbac/bootstrappolicy/testdata/cluster-roles.yaml

+32-4
Some generated files are not rendered by default. Learn more about customizing how changed files appear on GitHub.

0 commit comments

Comments
 (0)