1
0
Fork 0
mirror of https://github.com/kyverno/kyverno.git synced 2025-03-31 03:45:17 +00:00

release v1.3.2-rc3

This commit is contained in:
Shuting Zhao 2021-02-08 18:15:28 -08:00
parent cbe575ec32
commit db1bfba3f8
5 changed files with 15 additions and 14 deletions

View file

@ -1,7 +1,7 @@
apiVersion: v1 apiVersion: v1
name: kyverno name: kyverno
version: v1.3.2-rc2 version: v1.3.2-rc3
appVersion: v1.3.2-rc2 appVersion: v1.3.2-rc3
icon: https://github.com/kyverno/kyverno/blob/master/documentation/images/Kyverno_Horizontal.png icon: https://github.com/kyverno/kyverno/blob/master/documentation/images/Kyverno_Horizontal.png
description: Kubernetes Native Policy Management description: Kubernetes Native Policy Management
keywords: keywords:

View file

@ -2509,8 +2509,8 @@ spec:
fieldPath: metadata.namespace fieldPath: metadata.namespace
- name: KYVERNO_SVC - name: KYVERNO_SVC
value: kyverno-svc value: kyverno-svc
image: ghcr.io/kyverno/kyverno:v1.3.2-rc2 image: ghcr.io/kyverno/kyverno:v1.3.2-rc3
imagePullPolicy: Always imagePullPolicy: IfNotPresent
livenessProbe: livenessProbe:
failureThreshold: 4 failureThreshold: 4
httpGet: httpGet:
@ -2552,8 +2552,8 @@ spec:
runAsNonRoot: true runAsNonRoot: true
runAsUser: 1000 runAsUser: 1000
initContainers: initContainers:
- image: ghcr.io/kyverno/kyvernopre:v1.3.2-rc2 - image: ghcr.io/kyverno/kyvernopre:v1.3.2-rc3
imagePullPolicy: Always imagePullPolicy: IfNotPresent
name: kyverno-pre name: kyverno-pre
securityContext: securityContext:
allowPrivilegeEscalation: false allowPrivilegeEscalation: false

View file

@ -8,7 +8,7 @@ resources:
images: images:
- name: ghcr.io/kyverno/kyverno - name: ghcr.io/kyverno/kyverno
newName: ghcr.io/kyverno/kyverno newName: ghcr.io/kyverno/kyverno
newTag: v1.3.2-rc2 newTag: v1.3.2-rc3
- name: ghcr.io/kyverno/kyvernopre - name: ghcr.io/kyverno/kyvernopre
newName: ghcr.io/kyverno/kyvernopre newName: ghcr.io/kyverno/kyvernopre
newTag: v1.3.2-rc2 newTag: v1.3.2-rc3

View file

@ -22,7 +22,7 @@ spec:
initContainers: initContainers:
- name: kyverno-pre - name: kyverno-pre
image: ghcr.io/kyverno/kyvernopre:latest image: ghcr.io/kyverno/kyvernopre:latest
imagePullPolicy: Always imagePullPolicy: IfNotPresent
securityContext: securityContext:
runAsUser: 1000 runAsUser: 1000
runAsNonRoot: true runAsNonRoot: true
@ -35,7 +35,7 @@ spec:
containers: containers:
- name: kyverno - name: kyverno
image: ghcr.io/kyverno/kyverno:latest image: ghcr.io/kyverno/kyverno:latest
imagePullPolicy: Always imagePullPolicy: IfNotPresent
args: args:
- "--filterK8sResources=[Event,*,*][*,kube-system,*][*,kube-public,*][*,kube-node-lease,*][Node,*,*][APIService,*,*][TokenReview,*,*][SubjectAccessReview,*,*][*,kyverno,*][Binding,*,*][ReplicaSet,*,*][ReportChangeRequest,*,*][ClusterReportChangeRequest,*,*][PolicyReport,*,*][ClusterPolicyReport,*,*]" - "--filterK8sResources=[Event,*,*][*,kube-system,*][*,kube-public,*][*,kube-node-lease,*][Node,*,*][APIService,*,*][TokenReview,*,*][SubjectAccessReview,*,*][*,kyverno,*][Binding,*,*][ReplicaSet,*,*][ReportChangeRequest,*,*][ClusterReportChangeRequest,*,*][PolicyReport,*,*][ClusterPolicyReport,*,*]"
# customize webhook timeout # customize webhook timeout

View file

@ -2327,6 +2327,7 @@ rules:
- get - get
- list - list
- update - update
- watch
--- ---
apiVersion: rbac.authorization.k8s.io/v1 apiVersion: rbac.authorization.k8s.io/v1
kind: ClusterRole kind: ClusterRole
@ -2508,8 +2509,8 @@ spec:
fieldPath: metadata.namespace fieldPath: metadata.namespace
- name: KYVERNO_SVC - name: KYVERNO_SVC
value: kyverno-svc value: kyverno-svc
image: ghcr.io/kyverno/kyverno:v1.3.2-rc2 image: ghcr.io/kyverno/kyverno:v1.3.2-rc3
imagePullPolicy: Always imagePullPolicy: IfNotPresent
livenessProbe: livenessProbe:
failureThreshold: 4 failureThreshold: 4
httpGet: httpGet:
@ -2551,8 +2552,8 @@ spec:
runAsNonRoot: true runAsNonRoot: true
runAsUser: 1000 runAsUser: 1000
initContainers: initContainers:
- image: ghcr.io/kyverno/kyvernopre:v1.3.2-rc2 - image: ghcr.io/kyverno/kyvernopre:v1.3.2-rc3
imagePullPolicy: Always imagePullPolicy: IfNotPresent
name: kyverno-pre name: kyverno-pre
securityContext: securityContext:
allowPrivilegeEscalation: false allowPrivilegeEscalation: false