-
Story
-
Resolution: Unresolved
-
Minor
-
None
-
None
-
False
-
None
-
False
-
-
User Story
As a cluster admin, I want to specify additional groups to use in the Shared Resource CSI driver SAR check so that I can use principle of least privilege when sharing data across my cluster.
Background
As part of addressing OCPBUGS-10022, we hard-code the "system:serviceaccounts" group in the driver's SAR check, assuming we are always checking service account permissions.