Merge pull request #111694 from ialidzhikov/enh/unprivileged-node-local-dns

Run node-local-dns in non-privileged mode
This commit is contained in:
Kubernetes Prow Robot
2022-08-23 17:17:41 -07:00
committed by GitHub

View File

@@ -145,7 +145,9 @@ spec:
memory: 5Mi
args: [ "-localip", "__PILLAR__LOCAL__DNS__,__PILLAR__DNS__SERVER__", "-conf", "/etc/Corefile", "-upstreamsvc", "kube-dns-upstream" ]
securityContext:
privileged: true
capabilities:
add:
- NET_ADMIN
ports:
- containerPort: 53
name: dns