Skip to content

Drop capabilities cannot be set for containers.

Hi,

Our Kubernetes OPA Gatekeeper requires to drop all capabilities in pod containers. In existing gitlab runner deployment for containers and initContainers in securityContext block there is only allowPrivilegeEscalation: false

It should be possible to drop capabilities for containers.

Thanks,

Bart

To upload designs, you'll need to enable LFS and have an admin enable hashed storage. More information