Uploaded image for project: 'OpenShift Builds'
  1. OpenShift Builds
  2. BUILD-872

Support additional groups for SAR Checks

XMLWordPrintable

    • False
    • None
    • False

      User Story

      As a cluster admin, I want to specify additional groups to use in the Shared Resource CSI driver SAR check so that I can use principle of least privilege when sharing data across my cluster.

      Background

      As part of addressing OCPBUGS-10022, we hard-code the "system:serviceaccounts" group in the driver's SAR check, assuming we are always checking service account permissions.

              Unassigned Unassigned
              adkaplan@redhat.com Adam Kaplan
              Votes:
              0 Vote for this issue
              Watchers:
              1 Start watching this issue

                Created:
                Updated: