From 07f8d025c886316afd5e4642f34baa846e11c571 Mon Sep 17 00:00:00 2001 From: Josh Ellithorpe Date: Sat, 4 Jun 2016 15:52:10 -0700 Subject: [PATCH] Remove SecurityContextDeny from aws configurations --- cluster/aws/config-default.sh | 2 +- cluster/aws/config-test.sh | 2 +- 2 files changed, 2 insertions(+), 2 deletions(-) diff --git a/cluster/aws/config-default.sh b/cluster/aws/config-default.sh index 827be7cae78..69f0e9b4cac 100644 --- a/cluster/aws/config-default.sh +++ b/cluster/aws/config-default.sh @@ -134,7 +134,7 @@ fi # Admission Controllers to invoke prior to persisting objects in cluster # If we included ResourceQuota, we should keep it at the end of the list to prevent incremeting quota usage prematurely. -ADMISSION_CONTROL=NamespaceLifecycle,LimitRanger,SecurityContextDeny,ServiceAccount,PersistentVolumeLabel,ResourceQuota +ADMISSION_CONTROL=NamespaceLifecycle,LimitRanger,ServiceAccount,PersistentVolumeLabel,ResourceQuota # Optional: Enable/disable public IP assignment for minions. # Important Note: disable only if you have setup a NAT instance for internet access and configured appropriate routes! diff --git a/cluster/aws/config-test.sh b/cluster/aws/config-test.sh index 2a144792717..6cdef837a29 100755 --- a/cluster/aws/config-test.sh +++ b/cluster/aws/config-test.sh @@ -120,7 +120,7 @@ fi # Admission Controllers to invoke prior to persisting objects in cluster # If we included ResourceQuota, we should keep it at the end of the list to prevent incremeting quota usage prematurely. -ADMISSION_CONTROL=NamespaceLifecycle,LimitRanger,SecurityContextDeny,ServiceAccount,PersistentVolumeLabel,ResourceQuota +ADMISSION_CONTROL=NamespaceLifecycle,LimitRanger,ServiceAccount,PersistentVolumeLabel,ResourceQuota # Optional: Enable/disable public IP assignment for minions. # Important Note: disable only if you have setup a NAT instance for internet access and configured appropriate routes!