From 71cac1fc3c0e594687d1e6ca2339b4b06acedc3c Mon Sep 17 00:00:00 2001 From: Creste Date: Mon, 9 Oct 2023 11:54:32 -0400 Subject: [PATCH] Enable read-only root filesystem. --- .../deployment/helm/dask-kubernetes-operator/values.yaml | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/dask_kubernetes/operator/deployment/helm/dask-kubernetes-operator/values.yaml b/dask_kubernetes/operator/deployment/helm/dask-kubernetes-operator/values.yaml index 2d3f081d0..d58264254 100644 --- a/dask_kubernetes/operator/deployment/helm/dask-kubernetes-operator/values.yaml +++ b/dask_kubernetes/operator/deployment/helm/dask-kubernetes-operator/values.yaml @@ -28,7 +28,7 @@ securityContext: # Security context for the operator container runAsNonRoot: true runAsUser: 1000 allowPrivilegeEscalation: false - # readOnlyRootFilesystem: true + readOnlyRootFilesystem: true resources: {} # Resources for the operator pod # We usually recommend not to specify default resources and to leave this as a conscious