files: make the files server running as root (#1063)

Co-authored-by: liuyu <>
This commit is contained in:
eball
2025-03-12 20:20:42 +08:00
committed by GitHub
parent 7a6f9d8908
commit 49b9ff6f41

View File

@@ -46,9 +46,8 @@ spec:
serviceAccount: os-internal
serviceAccountName: os-internal
securityContext:
runAsUser: 1000
runAsGroup: 1000
fsGroup: 1000
runAsUser: 0
runAsNonRoot: false
initContainers:
- name: init-data
image: busybox:1.28
@@ -74,7 +73,7 @@ spec:
imagePullPolicy: IfNotPresent
securityContext:
allowPrivilegeEscalation: false
runAsUser: 1000
runAsUser: 0
ports:
- containerPort: 8080
env:
@@ -99,7 +98,7 @@ spec:
imagePullPolicy: IfNotPresent
securityContext:
allowPrivilegeEscalation: true
runAsUser: 1000
runAsUser: 0
privileged: true
ports:
- containerPort: 9090
@@ -119,7 +118,7 @@ spec:
imagePullPolicy: IfNotPresent
securityContext:
allowPrivilegeEscalation: true
runAsUser: 1000
runAsUser: 0
privileged: true
volumeMounts:
- name: fb-data
@@ -273,7 +272,7 @@ spec:
imagePullPolicy: IfNotPresent
securityContext:
allowPrivilegeEscalation: true
runAsUser: 1000
runAsUser: 0
privileged: true
- name: nginx
image: 'nginx:stable-alpine3.17-slim'