show-parents] [-S, --ns-changes] [-t, --thread-names] [-T, --hide-threads] [-u, --uid-changes] [-Z, --security-context
(如操控网络堆栈和访问设备)的容器而言是有用的 image: busybox:latest imagePullPolicy: Always name: security-context 参考文档 https://kubernetes.io/zh/docs/tasks/configure-pod-container/security-context/#%E4%B8%BA-pod-%E9%
policy/pod-security-policy/ Security Context:https://kubernetes.io/docs/tasks/configure-pod-container/security-context
policy/pod-security-policy/ Security Context:https://kubernetes.io/docs/tasks/configure-pod-container/security-context
More info: https://kubernetes.io/docs/concepts/policy/security-context/ More info: https:// kubernetes.io/docs/tasks/configure-pod-container/security-context/ startupProbe <Object> StartupProbe
Ref: [https://kubernetes.io/docs/tasks/configure-pod-container/security-context/](https://kubernetes.io /docs/tasks/configure-pod-container/security-context/ securityContext: {} podSecurityContext: {} Ref: [https://kubernetes.io/docs/tasks/configure-pod-container/security-context/](https://kubernetes.io /security-context/") securityContext: {} podSecurityContext: {} service: # -- Service annotations Ref: [https://kubernetes.io/docs/tasks/configure-pod-container/security-context/](https://kubernetes.io
seccompProfile:用于定义容器使用的 Seccomp 选项,过滤进程的系统调用 官方文档:https://kubernetes.io/docs/tasks/configure-pod-container/security-context
extraEnvVars: ## Kubernetes Security Context ## https://kubernetes.io/docs/tasks/configure-pod-container/security-context extraEnvVars: ## Kubernetes Security Context ## https://kubernetes.io/docs/tasks/configure-pod-container/security-context
concepts/cluster-administration/sysctl-cluster/ https://kubernetes.io/docs/tasks/configure-pod-container/security-context
org/linux/man-pages/man7/capabilities.7.html https://kubernetes.io/docs/tasks/configure-pod-container/security-context / https://kubernetes.io/docs/tasks/configure-pod-container/security-context/#set-capabilities-for-a-container
See https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for more details.)
See https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for more details.) [..
PodSecurityContext: https://kubernetes.io/docs/reference/kubernetes-api/workload-resources/pod-v1/#security-context
参考 kubeless介绍 security-context kube-proxy
dckc/awesome-ocap#libraries-and-frameworks https://kubernetes.io/docs/tasks/configure-pod-container/security-context
clair https://github.com/banyanops/collector https://kubernetes.io/docs/tasks/configure-pod-container/security-context
-Z 选项不跟参数,如 -Z -,安全上下文将列在 SECURITY-CONTEXT 列中输出 -- 双减号表示选项结束 NAMES 列出指定文件,符号链接在使用前将被解析 4.输出字段说明 当指定了
Concepts > Configuration > SecurityContext 文档链接:https://kubernetes.io/docs/tasks/configure-pod-container/security-context
Documentation/userns-idioms.html Kubernetes 安全上下文文档:https://kubernetes.io/docs/tasks/configure-pod-container/security-context
security context options 793 # See: 794 # https://kubernetes.io/docs/tasks/configure-pod-container/security-context