fix: security kontext kc proxy

This commit is contained in:
Yannik Schmidt
2025-05-20 07:30:17 +02:00
parent cd3f69e0ac
commit 81c33aeaa0

View File

@@ -700,6 +700,17 @@ nubusKeycloakExtensions:
resources:
{{ .Values.resources.umsKeycloakExtensionProxy | toYaml | nindent 6 }}
securityContext:
allowPrivilegeEscalation: false
capabilities:
drop:
- "ALL"
enabled: true
runAsUser: 1000
runAsGroup: 1000
seccompProfile:
type: "RuntimeDefault"
readOnlyRootFilesystem: true
runAsNonRoot: true
seccompProfile:
type: "RuntimeDefault"
seLinuxOptions: