Skip to content

chore: set readOnlyRootFilesystem on Operator Container - #740

Merged
openshift-merge-bot[bot] merged 2 commits into
redhat-developer:mainfrom
coreydaley:2025-01-29-enable-readonlyfilesystem-on-operator-container
Feb 7, 2025
Merged

chore: set readOnlyRootFilesystem on Operator Container#740
openshift-merge-bot[bot] merged 2 commits into
redhat-developer:mainfrom
coreydaley:2025-01-29-enable-readonlyfilesystem-on-operator-container

Conversation

@coreydaley

@coreydaley coreydaley commented Feb 3, 2025

Copy link
Copy Markdown
Contributor

Description

Sets the readOnlyRootFilesystem option for the container securityContext to true.

Which issue(s) does this PR fix or relate to

https://issues.redhat.com/browse/RHIDP-5762

PR acceptance criteria

  • Tests
  • Documentation

How to test changes / Special notes to the reviewer

Co-authored-by: coreydaley <coreydaley@users.noreply.github.com>
@github-actions

github-actions Bot commented Feb 3, 2025

Copy link
Copy Markdown
Contributor

⚠️ Files changed in bundle generation!

Those changes to the operator bundle manifests should have been pushed automatically to your PR branch.

@github-actions

github-actions Bot commented Feb 3, 2025

Copy link
Copy Markdown
Contributor

@github-actions

github-actions Bot commented Feb 3, 2025

Copy link
Copy Markdown
Contributor

@coreydaley coreydaley changed the title [WIP] chore: set readOnlyRootFilesystem on Operator Container chore: set readOnlyRootFilesystem on Operator Container Feb 3, 2025
@coreydaley

Copy link
Copy Markdown
Contributor Author

@rm3l @gazarenkov ptal

@openshift-ci openshift-ci Bot added the approved label Feb 4, 2025
@coreydaley

Copy link
Copy Markdown
Contributor Author

@rm3l @gazarenkov Do either of you have any other questions or comments about this change? If not can I get an lgtm?

@rm3l

rm3l commented Feb 5, 2025

Copy link
Copy Markdown
Member

@rm3l @gazarenkov Do either of you have any other questions or comments about this change? If not can I get an lgtm?

It is fine for me. @gazarenkov PTAL and lgtm it if it looks good for you.

@rm3l rm3l left a comment

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

/lgtm

@openshift-ci openshift-ci Bot added the lgtm label Feb 7, 2025
@openshift-ci

openshift-ci Bot commented Feb 7, 2025

Copy link
Copy Markdown

[APPROVALNOTIFIER] This PR is APPROVED

This pull-request has been approved by: rm3l

The full list of commands accepted by this bot can be found here.

The pull request process is described here

Details Needs approval from an approver in each of these files:

Approvers can indicate their approval by writing /approve in a comment
Approvers can cancel approval by writing /approve cancel in a comment

@rm3l

rm3l commented Feb 7, 2025

Copy link
Copy Markdown
Member

LGTM'ed to test this in the E2E Nightly workflow as soon as possible.

@openshift-merge-bot
openshift-merge-bot Bot merged commit 813014d into redhat-developer:main Feb 7, 2025
Fortune-Ndlovu pushed a commit to Fortune-Ndlovu/rhdh-operator that referenced this pull request Sep 6, 2025
…oper#740)

* chore: set readOnlyRootFilesystem on Operator Container

* Regenerate bundle manifests

Co-authored-by: coreydaley <coreydaley@users.noreply.github.com>

---------

Co-authored-by: github-actions[bot] <github-actions[bot]@users.noreply.github.com>
Co-authored-by: coreydaley <coreydaley@users.noreply.github.com>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants