File tree 2 files changed +5
-1
lines changed
2 files changed +5
-1
lines changed Original file line number Diff line number Diff line change @@ -6,6 +6,8 @@ metadata:
6
6
{{- if .Values.namespace_psa }}
7
7
pod-security.kubernetes.io/enforce : {{ .Values.namespace_psa.enforceLevel }}
8
8
pod-security.kubernetes.io/enforce-version : {{ .Values.namespace_psa.enforceVersion }}
9
+ pod-security.kubernetes.io/audit : restricted
10
+ pod-security.kubernetes.io/warn : restricted
9
11
{{- end }}
10
12
11
13
---
@@ -17,4 +19,6 @@ metadata:
17
19
{{- if .Values.operator_namespace_psa }}
18
20
pod-security.kubernetes.io/enforce : {{ .Values.operator_namespace_psa.enforceLevel }}
19
21
pod-security.kubernetes.io/enforce-version : {{ .Values.operator_namespace_psa.enforceVersion }}
22
+ pod-security.kubernetes.io/audit : restricted
23
+ pod-security.kubernetes.io/warn : restricted
20
24
{{- end }}
Original file line number Diff line number Diff line change @@ -2,7 +2,7 @@ rbacApiVersion: rbac.authorization.k8s.io
2
2
namespace : operator-lifecycle-manager
3
3
# see https://kubernetes.io/docs/concepts/security/pod-security-admission/ for more details
4
4
namespace_psa :
5
- enforceLevel : restricted
5
+ enforceLevel : baseline
6
6
enforceVersion : latest
7
7
catalog_namespace : operator-lifecycle-manager
8
8
operator_namespace : operators
You can’t perform that action at this time.
0 commit comments