-
Bug
-
Resolution: Done-Errata
-
Critical
-
4.16
This is a clone of issue OCPBUGS-35252. The following is the description of the original issue:
—
Clone of original bug to ensure the change is made in HyperShift
Description of problem:
We shouldn't enforce PSa in 4.16, neither by label sync, neither by global cluster config.
Version-Release number of selected component (if applicable):
4.16
How reproducible:
100%
Steps to Reproduce:
As a cluster admin: 1. create two new namespaces/projects: pokus, openshift-pokus 2. as a cluster-admin, attempt to create a privileged pod in both the namespaces from 1.
Actual results:
pod creation is blocked by pod security admission
Expected results:
only a warning about pod violating the namespace pod security level should be emitted
Additional info:
- clones
-
OCPBUGS-35252 [4.17][HyperShift] don't enforce PSa
- Closed
- is blocked by
-
OCPBUGS-35252 [4.17][HyperShift] don't enforce PSa
- Closed
- links to
-
RHEA-2024:0041 OpenShift Container Platform 4.16.z bug fix update