azure-docs icon indicating copy to clipboard operation
azure-docs copied to clipboard

Pod security policies deprecated and mentioned in the documentation please update information.

Open abengtss-max opened this issue 2 years ago • 3 comments

[Enter feedback here]

Lets remove the mentioning of PSP for our Azure Policies. PSP is deprecated since release 1.21, please use an alternative solution then PSP. please refer to the Azure Policy:

Kubernetes cluster containers should not use forbidden sysctl interfaces

Kubernetes cluster containers should only use allowed AppArmor profiles

Kubernetes cluster containers should only use allowed ProcMountType

Kubernetes cluster containers should only use allowed seccomp profiles

Kubernetes cluster pod FlexVolume volumes should only use allowed drivers

Kubernetes cluster pod hostPath volumes should only use allowed host paths

Kubernetes cluster pods and containers should only run with approved user and group IDs

Kubernetes cluster pods and containers should only use allowed SELinux options

Kubernetes cluster pods and containers should only use allowed SELinux options


Document Details

Do not edit this section. It is required for learn.microsoft.com ➟ GitHub issue linking.

abengtss-max avatar Oct 20 '22 18:10 abengtss-max

@abengtss-max Thanks for your feedback! We will investigate and update as appropriate.

YashikaTyagii avatar Oct 21 '22 03:10 YashikaTyagii

@abengtss-max Thanks for bringing this to our attention. I'm going to assign this to the document author so they can take a look at it accordingly.

AjayBathini-MSFT avatar Oct 21 '22 05:10 AjayBathini-MSFT

@MGoedtel Can you please check and add your comments on this doc update request as applicable.

AjayBathini-MSFT avatar Oct 21 '22 05:10 AjayBathini-MSFT

We sincerely apologize for not reviewing your issue in a timely manner and for the delayed response. The requested updates have not been made since the creation of this issue, and the timeline for resolution may vary based on resourcing, so we've created an internal work item address your feedback. We are closing this issue for now, but feel free to comment here as necessary. #please-close

MGoedtel avatar May 09 '23 18:05 MGoedtel