-
Bug
-
Resolution: Done-Errata
-
Normal
-
4.13, 4.12
-
None
-
Moderate
-
No
-
Rejected
-
False
-
Description of problem: Our control plane security requires that cluster master pods not automount service acount tokens unless absolutely necessary.
Version-Release number of selected component (if applicable):
How reproducible:
Steps to Reproduce:
1. Retrieved the deployment files for both cluster-node-tuning-operator and multus-admission-controller 2. Add the automountServiceAccountToken: false field 3. Apply them again under the master namespace
Actual results:
automountServiceAccountToken: false
Expected results:
automountServiceAccountToken: false
Additional info:
- clones
-
OCPBUGS-20276 Edited multus-admission-controller deployment config to not add automountServiceAccountToken
- Closed
- depends on
-
OCPBUGS-20276 Edited multus-admission-controller deployment config to not add automountServiceAccountToken
- Closed
- is depended on by
-
OCPBUGS-20277 Edited multus-admission-controller deployment config to not add automountServiceAccountToken
- Closed
- links to
-
RHBA-2023:6846 OpenShift Container Platform 4.13.z bug fix update