You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
In order to fix security issues recognised by our scanning system we would like to request the following changes in Oasis helm charts:
Immutable (read-only) root filesystem should be enforced for all containers (each container should have readOnlyRootFilesystem : true and mount volumes if necessary)
Disable automounting API credentials (service account or pod level, automountServiceAccountToken: false). If Kubernetes API is needed than it should be explicitly mounted.
Version / Environment information
OS / platform / environment used: Kubernetes 1.25+
affected Oasis versions: All
The text was updated successfully, but these errors were encountered:
Issue Description
In order to fix security issues recognised by our scanning system we would like to request the following changes in Oasis helm charts:
Version / Environment information
The text was updated successfully, but these errors were encountered: