-
Epic
-
Resolution: Done-Errata
-
Major
-
None
-
None
-
Run Glance pod components at minimum privilege escalation level
-
19
-
False
-
-
False
-
Not Selected
-
Committed
-
No Docs Impact
-
In Progress
-
glance-operator-container-1.0.4-4
-
Proposed
-
Proposed
-
0% To Do, 0% In Progress, 100% Done
-
-
-
Important
Currently Glance services are executed using root user. This brings security concerns other than violating most of the security context requirements.
When possible, move Pods to run services (Glance API and related jobs) as Glance user/group.
- links to
-
RHSA-2024:140345 RHOSO OpenStack Podified operator containers security update