rancher-partner-charts/charts/nutanix/nutanix-csi-storage/templates/ntnx-csi-scc.yaml

30 lines
745 B
YAML

{{- if eq (toString .Values.openshift.scc) "true" }}
kind: SecurityContextConstraints
apiVersion: security.openshift.io/v1
metadata:
name: ntnx-csi-scc
allowHostDirVolumePlugin: true
allowHostIPC: false
allowHostNetwork: true
allowHostPID: false
allowHostPorts: true
allowPrivilegeEscalation: true
allowPrivilegedContainer: true
allowedCapabilities: []
defaultAddCapabilities: []
fsGroup:
type: RunAsAny
groups: []
priority:
readOnlyRootFilesystem: false
requiredDropCapabilities: []
runAsUser:
type: RunAsAny
seLinuxContext:
type: RunAsAny
supplementalGroups:
type: RunAsAny
users:
- system:serviceaccount:{{ .Release.Namespace }}:nutanix-csi-controller
- system:serviceaccount:{{ .Release.Namespace }}:nutanix-csi-node
{{- end}}