@@ -679,16 +679,16 @@ podSecurityContext:
679679 fsGroup : 1000
680680# # Configure Container Security Context (only main container)
681681# # ref: https://kubernetes.io/docs/tasks/configure-pod-container/security-context/#set-the-security-context-for-a-container
682- # # @param containerSecurityContext .enabled Enabled containers' Security Context
683- # # @param containerSecurityContext .seLinuxOptions [object,nullable] Set SELinux options in container
684- # # @param containerSecurityContext .runAsUser Set containers' Security Context runAsUser
685- # # @param containerSecurityContext .runAsGroup Set containers' Security Context runAsGroup
686- # # @param containerSecurityContext .runAsNonRoot Set container's Security Context runAsNonRoot
687- # # @param containerSecurityContext .privileged Set container's Security Context privileged
688- # # @param containerSecurityContext .readOnlyRootFilesystem Set container's Security Context readOnlyRootFilesystem
689- # # @param containerSecurityContext .allowPrivilegeEscalation Set container's Security Context allowPrivilegeEscalation
690- # # @param containerSecurityContext .capabilities.drop List of capabilities to be dropped
691- # # @param containerSecurityContext .seccompProfile.type Set container's Security Context seccomp profile
682+ # # @param securityContext .enabled Enabled containers' Security Context
683+ # # @param securityContext .seLinuxOptions [object,nullable] Set SELinux options in container
684+ # # @param securityContext .runAsUser Set containers' Security Context runAsUser
685+ # # @param securityContext .runAsGroup Set containers' Security Context runAsGroup
686+ # # @param securityContext .runAsNonRoot Set container's Security Context runAsNonRoot
687+ # # @param securityContext .privileged Set container's Security Context privileged
688+ # # @param securityContext .readOnlyRootFilesystem Set container's Security Context readOnlyRootFilesystem
689+ # # @param securityContext .allowPrivilegeEscalation Set container's Security Context allowPrivilegeEscalation
690+ # # @param securityContext .capabilities.drop List of capabilities to be dropped
691+ # # @param securityContext .seccompProfile.type Set container's Security Context seccomp profile
692692# #
693693securityContext :
694694 enabled : true
@@ -990,13 +990,15 @@ init:
990990 # # Init container' Security Context
991991 # # Note: the chown of the data folder is done to securityContext.runAsUser
992992 # # and not the below init.securityContext.runAsUser
993+ # # @param init.securityContext.enabled Enabled containers' Security Context
993994 # # @param init.securityContext.seLinuxOptions [object,nullable] Set SELinux options in container
994995 # # @param init.securityContext.runAsUser User ID for the init container
995996 # # @param init.securityContext.runAsGroup Group ID for the init container
996997 # # @param init.securityContext.runAsNonRoot runAsNonRoot for the init container
997998 # # @param init.securityContext.seccompProfile.type seccompProfile.type for the init container
998999 # #
9991000 securityContext :
1001+ enabled : true
10001002 seLinuxOptions : {}
10011003 seccompProfile :
10021004 type : RuntimeDefault
@@ -1055,13 +1057,15 @@ test:
10551057 # # test container' Security Context
10561058 # # Note: the chown of the data folder is done to securityContext.runAsUser
10571059 # # and not the below test.securityContext.runAsUser
1060+ # # @param test.securityContext.enabled Enabled containers' Security Context
10581061 # # @param test.securityContext.seLinuxOptions [object,nullable] Set SELinux options in container
10591062 # # @param test.securityContext.runAsUser User ID for the test container
10601063 # # @param test.securityContext.runAsGroup Group ID for the test container
10611064 # # @param test.securityContext.runAsNonRoot runAsNonRoot for the test container
10621065 # # @param test.securityContext.seccompProfile.type seccompProfile.type for the test container
10631066 # #
10641067 securityContext :
1068+ enabled : false
10651069 seLinuxOptions : {}
10661070 seccompProfile :
10671071 type : RuntimeDefault
0 commit comments