From e93e29a6bc3c74efd4db4819d06bfa341232f9fd Mon Sep 17 00:00:00 2001 From: jyz0309 <45495947@qq.com> Date: Sat, 25 Sep 2021 09:31:55 +0800 Subject: [PATCH] address comment Signed-off-by: jyz0309 <45495947@qq.com> --- .../src/k8s.io/pod-security-admission/admission/admission.go | 5 ++++- 1 file changed, 4 insertions(+), 1 deletion(-) diff --git a/staging/src/k8s.io/pod-security-admission/admission/admission.go b/staging/src/k8s.io/pod-security-admission/admission/admission.go index b12e274b6c4..9d3965e715c 100644 --- a/staging/src/k8s.io/pod-security-admission/admission/admission.go +++ b/staging/src/k8s.io/pod-security-admission/admission/admission.go @@ -408,7 +408,10 @@ func (a *Admission) EvaluatePod(ctx context.Context, nsPolicy api.Policy, nsPoli auditAnnotations["error"] = fmt.Sprintf("Failed to parse policy: %v", nsPolicyErr) } - klog.V(2).InfoS("nsPolicy evaluation", "op", attrs.GetOperation(), "resource", attrs.GetResource(), "namespace", attrs.GetNamespace(), "name", attrs.GetName()) + if klog.V(4).Enabled() { + klog.InfoS("Pod Security evaluation", "policy", nsPolicy, "op", attrs.GetOperation(), "resource", attrs.GetResource(), "namespace", attrs.GetNamespace(), "name", attrs.GetName()) + } + response := allowedResponse() if enforce { if result := policy.AggregateCheckResults(a.Evaluator.EvaluatePod(nsPolicy.Enforce, podMetadata, podSpec)); !result.Allowed {