diff --git a/examples/grafana_deployment/resources.yaml b/examples/grafana_deployment/resources.yaml index 470170d5f..400521050 100644 --- a/examples/grafana_deployment/resources.yaml +++ b/examples/grafana_deployment/resources.yaml @@ -7,10 +7,6 @@ metadata: dashboards: "grafana" spec: config: - log: - mode: "console" - auth: - disable_login_form: "false" security: admin_user: root admin_password: secret @@ -20,9 +16,13 @@ spec: spec: containers: - name: grafana - image: grafana/grafana:9.4.3 securityContext: - allowPrivilegeEscalation: true - readOnlyRootFilesystem: false + # Customize this in case your volume provider needs specific UIDs/GIDs + runAsUser: 1001 + runAsGroup: 1001 + runAsNonRoot: true + allowPrivilegeEscalation: false + capabilities: + drop: ["ALL"] readinessProbe: failureThreshold: 3 diff --git a/examples/persistent_volume/resources.yaml b/examples/persistent_volume/resources.yaml index 3e2ecfc81..d8e2a9841 100644 --- a/examples/persistent_volume/resources.yaml +++ b/examples/persistent_volume/resources.yaml @@ -28,10 +28,6 @@ spec: spec: containers: - name: grafana - image: grafana/grafana:9.4.3 - securityContext: - allowPrivilegeEscalation: true - readOnlyRootFilesystem: false readinessProbe: failureThreshold: 3 volumes: