diff --git a/csi-wekafsplugin/base/security.openshift.io/securitycontextconstraints/csi-wekafsplugin-controller-scc/securitycontextconstraints.yaml b/csi-wekafsplugin/base/security.openshift.io/securitycontextconstraints/csi-wekafsplugin-controller-scc/securitycontextconstraints.yaml index 6a524deb..e542acac 100644 --- a/csi-wekafsplugin/base/security.openshift.io/securitycontextconstraints/csi-wekafsplugin-controller-scc/securitycontextconstraints.yaml +++ b/csi-wekafsplugin/base/security.openshift.io/securitycontextconstraints/csi-wekafsplugin-controller-scc/securitycontextconstraints.yaml @@ -8,9 +8,6 @@ allowHostPID: false allowPrivilegedContainer: true allowHostDirVolumePlugin: true allowHostNetwork: true -allowedVolumeTypes: - - hostPath - - secret readOnlyRootFilesystem: false allowHostPorts: true runAsUser: @@ -23,3 +20,5 @@ supplementalGroups: type: RunAsAny users: - system:serviceaccount:csi-wekafsplugin:csi-wekafsplugin-controller +volumes: + - '*' diff --git a/csi-wekafsplugin/base/security.openshift.io/securitycontextconstraints/csi-wekafsplugin-node-scc/securitycontextconstraints.yaml b/csi-wekafsplugin/base/security.openshift.io/securitycontextconstraints/csi-wekafsplugin-node-scc/securitycontextconstraints.yaml index 74c8f9fe..786d683d 100644 --- a/csi-wekafsplugin/base/security.openshift.io/securitycontextconstraints/csi-wekafsplugin-node-scc/securitycontextconstraints.yaml +++ b/csi-wekafsplugin/base/security.openshift.io/securitycontextconstraints/csi-wekafsplugin-node-scc/securitycontextconstraints.yaml @@ -8,9 +8,6 @@ allowHostPID: false allowPrivilegedContainer: true allowHostDirVolumePlugin: true allowHostNetwork: true -allowedVolumeTypes: - - hostPath - - secret readOnlyRootFilesystem: false allowHostPorts: true runAsUser: @@ -23,3 +20,5 @@ supplementalGroups: type: RunAsAny users: - system:serviceaccount:csi-wekafsplugin:csi-wekafsplugin-node +volumes: + - '*'