Add capabilities for ["CHOWN", "FOWNER"] to make it more striker

This commit is contained in:
Volodymyr Zotov
2025-09-04 11:17:38 -05:00
parent 9c4849ec2e
commit bf6cac81cb

View File

@@ -39,6 +39,7 @@ spec:
allowPrivilegeEscalation: false
capabilities:
drop: [ "ALL" ]
add: ["CHOWN", "FOWNER"]
containers:
- name: connect-api
image: 1password/connect-api:latest