0-Home
Github
TraceMyPodsOfficial
TMP-docs
PSP
Restrict Priv Pod.yaml

Documentation

apiVersion: kyverno.io/v1 kind: ClusterPolicy metadata: name: disallow-privileged spec: validationFailureAction: Enforce background: true rules:

  • name: check-privileged match: resources: kinds:
    • Pod validate: message: "Privileged mode is not allowed." pattern: spec: containers:
      • securityContext: privileged: "false"

💬 Need a Quick Summary?

Hey! Don't have time to read everything? I get it. 😊
Click below and I'll give you the main points and what matters most on this page.
Takes about 5 seconds • Uses Perplexity AI