Skip to content

Commit

Permalink
fix: security context rollback (#37)
Browse files Browse the repository at this point in the history
  • Loading branch information
ArcRiiad authored Dec 10, 2024
1 parent b4b34fb commit c247ac8
Show file tree
Hide file tree
Showing 2 changed files with 0 additions and 24 deletions.
6 changes: 0 additions & 6 deletions templates/upgrade.yml
Original file line number Diff line number Diff line change
Expand Up @@ -17,9 +17,6 @@ spec:
- name: horizon-upgrade
image: {{ include "common.images.image" (dict "imageRoot" .Values.upgrade.image "global" .Values.global) }}
imagePullPolicy: {{ .Values.upgrade.image.pullPolicy | default "IfNotPresent" | quote }}
{{- if .Values.upgrade.containerSecurityContext.enabled }}
securityContext: {{- omit .Values.upgrade.containerSecurityContext "enabled" | toYaml | nindent 12 }}
{{- end }}
{{- include "common.images.renderPullSecrets" (dict "images" (list .Values.upgrade.image) "context" $) | nindent 10 }}
args: [
"-y",
Expand All @@ -36,8 +33,5 @@ spec:
- name: MONGODB_URI
{{- include "horizon.mongodbUri" (dict "context" .) | nindent 14 }}
restartPolicy: Never
{{- if .Values.upgrade.podSecurityContext.enabled }}
securityContext: {{- omit .Values.upgrade.podSecurityContext "enabled" | toYaml | nindent 8 }}
{{- end }}
backoffLimit: 0
{{- end }}
18 changes: 0 additions & 18 deletions values.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -681,24 +681,6 @@ upgrade:
requests:
memory: 512Mi
cpu: 500m
## Configure Pods Security Context
## ref: https://kubernetes.io/docs/tasks/configure-pod-container/security-context/#set-the-security-context-for-a-pod
## @param upgrade.podSecurityContext.enabled Enabled Horizon pods' Security Context
## @param upgrade.podSecurityContext.fsGroup Set Horizon pod's Security Context fsGroup
##
podSecurityContext:
enabled: true
fsGroup: 1001
## Configure Container Security Context (only main container)
## ref: https://kubernetes.io/docs/tasks/configure-pod-container/security-context/#set-the-security-context-for-a-container
## @param upgrade.containerSecurityContext.enabled Enabled Horizon containers' Security Context
## @param upgrade.containerSecurityContext.runAsUser Set Horizon container's Security Context runAsUser
## @param upgrade.containerSecurityContext.runAsNonRoot Set Horizon container's Security Context runAsNonRoot
##
containerSecurityContext:
enabled: true
runAsUser: 1001
runAsNonRoot: true
## @param upgrade.from Sets to the version you're upgrading from. If empty, the chart will try to infer the version from the database.
##
from: ""
Expand Down

0 comments on commit c247ac8

Please sign in to comment.