File tree Expand file tree Collapse file tree 1 file changed +36
-1
lines changed Expand file tree Collapse file tree 1 file changed +36
-1
lines changed Original file line number Diff line number Diff line change @@ -171,7 +171,7 @@ resource "helm_release" "ingress_nginx" {
171
171
repository = " https://kubernetes.github.io/ingress-nginx"
172
172
173
173
chart = " ingress-nginx"
174
- version = " 4.10.0 "
174
+ version = " 4.10.1 "
175
175
wait = true
176
176
timeout = 600
177
177
@@ -187,5 +187,40 @@ resource "helm_release" "ingress_nginx" {
187
187
value = var.ingress_nginx_min_unavailable
188
188
}
189
189
190
+ set {
191
+ name = " controller.containerSecurityContext.runAsUser"
192
+ value = 101
193
+ }
194
+
195
+ set {
196
+ name = " controller.containerSecurityContext.runAsGroup"
197
+ value = 101
198
+ }
199
+
200
+ set {
201
+ name = " controller.containerSecurityContext.allowPrivilegeEscalation"
202
+ value = false
203
+ }
204
+
205
+ set {
206
+ name = " controller.containerSecurityContext.readOnlyRootFilesystem"
207
+ value = false
208
+ }
209
+
210
+ set {
211
+ name = " controller.containerSecurityContext.runAsNonRoot"
212
+ value = true
213
+ }
214
+
215
+ set_list {
216
+ name = " controller.containerSecurityContext.capabilities.drop"
217
+ value = [" ALL" ]
218
+ }
219
+
220
+ set_list {
221
+ name = " controller.containerSecurityContext.capabilities.add"
222
+ value = [" NET_BIND_SERVICE" ]
223
+ }
224
+
190
225
depends_on = [module . aws_eks . eks_managed_node_groups ]
191
226
}
You can’t perform that action at this time.
0 commit comments