File tree Expand file tree Collapse file tree 1 file changed +36
-1
lines changed Expand file tree Collapse file tree 1 file changed +36
-1
lines changed Original file line number Diff line number Diff line change @@ -15,7 +15,7 @@ resource "helm_release" "ingress_nginx" {
15
15
repository = " https://kubernetes.github.io/ingress-nginx"
16
16
17
17
chart = " ingress-nginx"
18
- version = " 4.10.0 "
18
+ version = " 4.10.1 "
19
19
wait = true
20
20
timeout = 600
21
21
@@ -55,5 +55,40 @@ resource "helm_release" "ingress_nginx" {
55
55
value = var.ingress_nginx_min_unavailable
56
56
}
57
57
58
+ set {
59
+ name = " controller.containerSecurityContext.runAsUser"
60
+ value = 101
61
+ }
62
+
63
+ set {
64
+ name = " controller.containerSecurityContext.runAsGroup"
65
+ value = 101
66
+ }
67
+
68
+ set {
69
+ name = " controller.containerSecurityContext.allowPrivilegeEscalation"
70
+ value = false
71
+ }
72
+
73
+ set {
74
+ name = " controller.containerSecurityContext.readOnlyRootFilesystem"
75
+ value = false
76
+ }
77
+
78
+ set {
79
+ name = " controller.containerSecurityContext.runAsNonRoot"
80
+ value = true
81
+ }
82
+
83
+ set_list {
84
+ name = " controller.containerSecurityContext.capabilities.drop"
85
+ value = [" ALL" ]
86
+ }
87
+
88
+ set_list {
89
+ name = " controller.containerSecurityContext.capabilities.add"
90
+ value = [" NET_BIND_SERVICE" ]
91
+ }
92
+
58
93
depends_on = [module . azure_aks . node_resource_group ]
59
94
}
You can’t perform that action at this time.
0 commit comments