This commit is contained in:
2024-02-20 17:15:27 +08:00
committed by huty
parent 6706e1a633
commit 34158042ad
1529 changed files with 177765 additions and 0 deletions

View File

@@ -0,0 +1,20 @@
apiVersion: constraints.gatekeeper.sh/v1beta1
kind: RestrictedPaths
metadata:
name: restrictedpaths-host
spec:
match:
kinds:
- apiGroups: [""]
kinds: ["Pod"]
labelSelector:
matchExpressions:
- key: kiamol
operator: In
values:
- ch16-lab
parameters:
paths:
- "/"
- "/bin"
- "/etc"

View File

@@ -0,0 +1,27 @@
apiVersion: apps/v1
kind: Deployment
metadata:
name: sleep
labels:
kiamol: ch16-lab
spec:
selector:
matchLabels:
app: sleep
template:
metadata:
labels:
app: sleep
kiamol: ch16-lab
spec:
containers:
- name: sleep
image: kiamol/ch03-sleep
volumeMounts:
- name: node-var
mountPath: /node-var
volumes:
- name: node-var
hostPath:
path: /var
type: Directory