mirror of
https://github.com/falcosecurity/falco.git
synced 2025-07-08 12:19:09 +00:00
CRI flag (#599)
* update(integrations): CRI flag Co-authored-by: Lorenzo Fontana <lo@linux.com> Signed-off-by: Leonardo Di Donato <leodidonato@gmail.com> * fix(integrations): set the containerd socket Co-Authored-By: Lorenzo Fontana <lo@linux.com> Signed-off-by: Leonardo Di Donato <leodidonato@gmail.com>
This commit is contained in:
parent
52329f83b2
commit
ff5d000736
@ -25,10 +25,12 @@ spec:
|
|||||||
# env:
|
# env:
|
||||||
# - name: SYSDIG_BPF_PROBE
|
# - name: SYSDIG_BPF_PROBE
|
||||||
# value: ""
|
# value: ""
|
||||||
args: [ "/usr/bin/falco", "-K", "/var/run/secrets/kubernetes.io/serviceaccount/token", "-k", "https://$(KUBERNETES_SERVICE_HOST)", "-pk"]
|
args: [ "/usr/bin/falco", "--cri", "/host/run/containerd/containerd.sock", "-K", "/var/run/secrets/kubernetes.io/serviceaccount/token", "-k", "https://$(KUBERNETES_SERVICE_HOST)", "-pk"]
|
||||||
volumeMounts:
|
volumeMounts:
|
||||||
- mountPath: /host/var/run/docker.sock
|
- mountPath: /host/var/run/docker.sock
|
||||||
name: docker-socket
|
name: docker-socket
|
||||||
|
- mountPath: /host/run/containerd/containerd.sock
|
||||||
|
name: containerd-socket
|
||||||
- mountPath: /host/dev
|
- mountPath: /host/dev
|
||||||
name: dev-fs
|
name: dev-fs
|
||||||
- mountPath: /host/proc
|
- mountPath: /host/proc
|
||||||
@ -52,6 +54,9 @@ spec:
|
|||||||
- name: docker-socket
|
- name: docker-socket
|
||||||
hostPath:
|
hostPath:
|
||||||
path: /var/run/docker.sock
|
path: /var/run/docker.sock
|
||||||
|
- name: containerd-socket
|
||||||
|
hostPath:
|
||||||
|
path: /run/containerd/containerd.sock
|
||||||
- name: dev-fs
|
- name: dev-fs
|
||||||
hostPath:
|
hostPath:
|
||||||
path: /dev
|
path: /dev
|
||||||
|
@ -18,10 +18,12 @@ spec:
|
|||||||
image: falcosecurity/falco:latest
|
image: falcosecurity/falco:latest
|
||||||
securityContext:
|
securityContext:
|
||||||
privileged: true
|
privileged: true
|
||||||
args: [ "/usr/bin/falco", "-K", "/var/run/secrets/kubernetes.io/serviceaccount/token", "-k", "https://kubernetes.default", "-pk", "-o", "json_output=true", "-o", "program_output.enabled=true", "-o", "program_output.program=jq '{text: .output}' | curl -d @- -X POST https://hooks.slack.com/services/see_your_slack_team/apps_settings_for/a_webhook_url"]
|
args: [ "/usr/bin/falco", "--cri", "/host/run/containerd/containerd.sock", "-K", "/var/run/secrets/kubernetes.io/serviceaccount/token", "-k", "https://kubernetes.default", "-pk", "-o", "json_output=true", "-o", "program_output.enabled=true", "-o", "program_output.program=jq '{text: .output}' | curl -d @- -X POST https://hooks.slack.com/services/see_your_slack_team/apps_settings_for/a_webhook_url"]
|
||||||
volumeMounts:
|
volumeMounts:
|
||||||
- mountPath: /host/var/run/docker.sock
|
- mountPath: /host/var/run/docker.sock
|
||||||
name: docker-socket
|
name: docker-socket
|
||||||
|
- mountPath: /host/run/containerd/containerd.sock
|
||||||
|
name: containerd-socket
|
||||||
- mountPath: /host/dev
|
- mountPath: /host/dev
|
||||||
name: dev-fs
|
name: dev-fs
|
||||||
- mountPath: /host/proc
|
- mountPath: /host/proc
|
||||||
@ -40,6 +42,9 @@ spec:
|
|||||||
- name: docker-socket
|
- name: docker-socket
|
||||||
hostPath:
|
hostPath:
|
||||||
path: /var/run/docker.sock
|
path: /var/run/docker.sock
|
||||||
|
- name: containerd-socket
|
||||||
|
hostPath:
|
||||||
|
path: /run/containerd/containerd.sock
|
||||||
- name: dev-fs
|
- name: dev-fs
|
||||||
hostPath:
|
hostPath:
|
||||||
path: /dev
|
path: /dev
|
||||||
|
Loading…
Reference in New Issue
Block a user