From 66b660d717c901321becf75e4b0bd6968210cd14 Mon Sep 17 00:00:00 2001 From: Jim Bugwadia Date: Wed, 19 Aug 2020 01:08:53 -0700 Subject: [PATCH] fix policy --- samples/DisallowNewCapabilities.md | 10 +++++----- samples/best_practices/disallow_new_capabilities.yaml | 10 +++++----- 2 files changed, 10 insertions(+), 10 deletions(-) diff --git a/samples/DisallowNewCapabilities.md b/samples/DisallowNewCapabilities.md index d237d5696e..25d6d662c9 100644 --- a/samples/DisallowNewCapabilities.md +++ b/samples/DisallowNewCapabilities.md @@ -27,11 +27,11 @@ spec: validate: message: "New capabilities cannot be added" pattern: - - spec: + spec: containers: - - name: "*" - =(securityContext): - =(capabilities): - X(add): null + - name: "*" + =(securityContext): + =(capabilities): + X(add): null ```` diff --git a/samples/best_practices/disallow_new_capabilities.yaml b/samples/best_practices/disallow_new_capabilities.yaml index 191d0bcf5b..bce68ab977 100644 --- a/samples/best_practices/disallow_new_capabilities.yaml +++ b/samples/best_practices/disallow_new_capabilities.yaml @@ -20,9 +20,9 @@ spec: validate: message: "New capabilities cannot be added" pattern: - - spec: + spec: containers: - - name: "*" - =(securityContext): - =(capabilities): - X(add): null + - name: "*" + =(securityContext): + =(capabilities): + X(add): null