Skip to content

Commit 36513a4

Browse files
authored
Remove user from managed-serviceaccount-manager chart (#91)
Signed-off-by: Tamal Saha <tamal@appscode.com>
1 parent e24d16f commit 36513a4

6 files changed

Lines changed: 21 additions & 17 deletions

File tree

apis/installer/v1alpha1/zz_generated.deepcopy.go

Lines changed: 1 addition & 1 deletion
Some generated files are not rendered by default. Learn more about customizing how changed files appear on GitHub.

charts/cluster-profile-manager/README.md

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -66,6 +66,7 @@ The following table lists the configurable parameters of the `cluster-profile-ma
6666
| image.proxies.quay | quay.io/company/bin:tag | <code>quay.io</code> |
6767
| image.proxies.kubernetes | registry.k8s.io/bin:tag | <code>registry.k8s.io</code> |
6868
| image.proxies.microsoft | | <code>mcr.microsoft.com</code> |
69+
| image.proxies.oracle | | <code>container-registry.oracle.com</code> |
6970
| image.proxies.weaviate | | <code>cr.weaviate.io</code> |
7071
| registry.credentials | | <code>{}</code> |
7172
| registry.certs | username: "abc" password: "xyz" | <code>{}</code> |

charts/cluster-profile-manager/values.openapiv3_schema.yaml

Lines changed: 2 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -70,6 +70,8 @@ properties:
7070
type: string
7171
microsoft:
7272
type: string
73+
oracle:
74+
type: string
7375
quay:
7476
type: string
7577
weaviate:

charts/cluster-profile-manager/values.yaml

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -45,6 +45,7 @@ image:
4545
# registry.k8s.io/bin:tag
4646
kubernetes: registry.k8s.io
4747
microsoft: mcr.microsoft.com
48+
oracle: container-registry.oracle.com
4849
weaviate: cr.weaviate.io
4950

5051
# image:

charts/managed-serviceaccount-manager/README.md

Lines changed: 14 additions & 14 deletions
Original file line numberDiff line numberDiff line change
@@ -45,20 +45,20 @@ The command removes all the Kubernetes components associated with the chart and
4545

4646
The following table lists the configurable parameters of the `managed-serviceaccount-manager` chart and their default values.
4747

48-
| Parameter | Description | Default |
49-
|--------------------------------|------------------------------------------------|------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------|
50-
| nameOverride | | <code>""</code> |
51-
| fullnameOverride | | <code>""</code> |
52-
| image | Image of the managed service-account instances | <code>ghcr.io/kluster-manager/managed-serviceaccount</code> |
53-
| tag | | <code>""</code> |
54-
| replicas | Number of replicas | <code>1</code> |
55-
| securityContext | | <code>{"allowPrivilegeEscalation":false,"capabilities":{"drop":["ALL"]},"readOnlyRootFilesystem":true,"runAsNonRoot":true,"runAsUser":65534,"seccompProfile":{"type":"RuntimeDefault"}}</code> |
56-
| featureGates.ephemeralIdentity | | <code>false</code> |
57-
| agentImagePullSecret | | <code>""</code> |
58-
| kubeconfigSecretName | required for multicluster controlplane | <code>""</code> |
59-
| addonManagerNamespace | | <code>open-cluster-management-managed-serviceaccount</code> |
60-
| placement.create | | <code>true</code> |
61-
| placement.name | | <code>global</code> |
48+
| Parameter | Description | Default |
49+
|--------------------------------|------------------------------------------------|-------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------|
50+
| nameOverride | | <code>""</code> |
51+
| fullnameOverride | | <code>""</code> |
52+
| image | Image of the managed service-account instances | <code>ghcr.io/kluster-manager/managed-serviceaccount</code> |
53+
| tag | | <code>""</code> |
54+
| replicas | Number of replicas | <code>1</code> |
55+
| securityContext | | <code>{"allowPrivilegeEscalation":false,"capabilities":{"drop":["ALL"]},"privileged":false,"readOnlyRootFilesystem":true,"runAsNonRoot":true,"seccompProfile":{"type":"RuntimeDefault"}}</code> |
56+
| featureGates.ephemeralIdentity | | <code>false</code> |
57+
| agentImagePullSecret | | <code>""</code> |
58+
| kubeconfigSecretName | required for multicluster controlplane | <code>""</code> |
59+
| addonManagerNamespace | | <code>open-cluster-management-managed-serviceaccount</code> |
60+
| placement.create | | <code>true</code> |
61+
| placement.name | | <code>global</code> |
6262

6363

6464
Specify each parameter using the `--set key=value[,key=value]` argument to `helm upgrade -i`. For example:

charts/managed-serviceaccount-manager/values.yaml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -12,9 +12,9 @@ securityContext: # +doc-gen:break
1212
allowPrivilegeEscalation: false
1313
capabilities:
1414
drop: ["ALL"]
15-
readOnlyRootFilesystem: true
15+
privileged: false
1616
runAsNonRoot: true
17-
runAsUser: 65534
17+
readOnlyRootFilesystem: true
1818
seccompProfile:
1919
type: RuntimeDefault
2020

0 commit comments

Comments
 (0)