From 6e5e23e365d2e79c0c7b7d9a9e89e325ec4a864b Mon Sep 17 00:00:00 2001 From: Sergiusz Urbaniak Date: Fri, 1 Oct 2021 13:39:24 +0200 Subject: [PATCH] podsecurity: enforce privileged for openshift-cluster-version namespace --- install/0000_00_cluster-version-operator_00_namespace.yaml | 3 +++ 1 file changed, 3 insertions(+) diff --git a/install/0000_00_cluster-version-operator_00_namespace.yaml b/install/0000_00_cluster-version-operator_00_namespace.yaml index 40b2aa305e..d97aa6cb18 100644 --- a/install/0000_00_cluster-version-operator_00_namespace.yaml +++ b/install/0000_00_cluster-version-operator_00_namespace.yaml @@ -10,3 +10,6 @@ metadata: name: openshift-cluster-version openshift.io/run-level: "1" openshift.io/cluster-monitoring: "true" + pod-security.kubernetes.io/enforce: privileged + pod-security.kubernetes.io/audit: privileged + pod-security.kubernetes.io/warn: privileged