diff --git a/deploy/prod-pod.yml b/deploy/prod-pod.yml index fb93937..bc22cd0 100644 --- a/deploy/prod-pod.yml +++ b/deploy/prod-pod.yml @@ -150,6 +150,8 @@ spec: allowPrivilegeEscalation: false capabilities: drop: ["ALL"] + runAsUser: 0 # Run as root + runAsGroup: 0 # Run as root group ports: - containerPort: 8080 # inside pod hostIP: 127.0.0.1 # only loopback on host