[bitnami/prometheus] feat: 🔒 Add readOnlyRootFilesystem support (#23990)

Signed-off-by: Javier Salmeron Garcia <jsalmeron@vmware.com>
This commit is contained in:
Javier J. Salmerón-García
2024-03-06 09:51:17 +01:00
committed by GitHub
parent 3abf97369c
commit bdf0d79f3a
5 changed files with 29 additions and 1 deletions

View File

@@ -127,6 +127,7 @@ The command removes all the Kubernetes components associated with the chart and
| `alertmanager.containerSecurityContext.enabled` | Enabled containers' Security Context | `true` |
| `alertmanager.containerSecurityContext.seLinuxOptions` | Set SELinux options in container | `nil` |
| `alertmanager.containerSecurityContext.runAsUser` | Set containers' Security Context runAsUser | `1001` |
| `alertmanager.containerSecurityContext.runAsGroup` | Set containers' Security Context runAsGroup | `0` |
| `alertmanager.containerSecurityContext.runAsNonRoot` | Set container's Security Context runAsNonRoot | `true` |
| `alertmanager.containerSecurityContext.privileged` | Set container's Security Context privileged | `false` |
| `alertmanager.containerSecurityContext.readOnlyRootFilesystem` | Set container's Security Context readOnlyRootFilesystem | `false` |
@@ -258,6 +259,7 @@ The command removes all the Kubernetes components associated with the chart and
| `server.containerSecurityContext.enabled` | Enabled containers' Security Context | `true` |
| `server.containerSecurityContext.seLinuxOptions` | Set SELinux options in container | `nil` |
| `server.containerSecurityContext.runAsUser` | Set containers' Security Context runAsUser | `1001` |
| `server.containerSecurityContext.runAsGroup` | Set containers' Security Context runAsGroup | `0` |
| `server.containerSecurityContext.runAsNonRoot` | Set container's Security Context runAsNonRoot | `true` |
| `server.containerSecurityContext.privileged` | Set container's Security Context privileged | `false` |
| `server.containerSecurityContext.readOnlyRootFilesystem` | Set container's Security Context readOnlyRootFilesystem | `false` |
@@ -320,6 +322,7 @@ The command removes all the Kubernetes components associated with the chart and
| `server.thanos.containerSecurityContext.enabled` | Enabled containers' Security Context | `true` |
| `server.thanos.containerSecurityContext.seLinuxOptions` | Set SELinux options in container | `nil` |
| `server.thanos.containerSecurityContext.runAsUser` | Set containers' Security Context runAsUser | `1001` |
| `server.thanos.containerSecurityContext.runAsGroup` | Set containers' Security Context runAsGroup | `0` |
| `server.thanos.containerSecurityContext.runAsNonRoot` | Set container's Security Context runAsNonRoot | `true` |
| `server.thanos.containerSecurityContext.privileged` | Set container's Security Context privileged | `false` |
| `server.thanos.containerSecurityContext.readOnlyRootFilesystem` | Set container's Security Context readOnlyRootFilesystem | `false` |