Uploaded image for project: 'OpenShift Builds'
  1. OpenShift Builds
  2. BUILD-872

Support additional groups for SAR Checks

XMLWordPrintable

    • False
    • None
    • False

      User Story

      As a cluster admin, I want to specify additional groups to use in the Shared Resource CSI driver SAR check so that I can use principle of least privilege when sharing data across my cluster.

      Background

      As part of addressing OCPBUGS-10022, we hard-code the "system:serviceaccounts" group in the driver's SAR check, assuming we are always checking service account permissions.

            Unassigned Unassigned
            adkaplan@redhat.com Adam Kaplan
            Votes:
            0 Vote for this issue
            Watchers:
            1 Start watching this issue

              Created:
              Updated: