Tim Allclair
Tim Allclair
/ok-to-test
/lgtm This looks good to me. There might be a few more implementation details to iron out, but we can handle those in PR reviews. Just a heads up: code...
I just noticed this is owned by SIG-Security, but the sig-security charter explicitly states that > SIG Security does not own any Kubernetes cluster component code https://github.com/kubernetes/community/blob/master/sig-security/charter.md#out-of-scope I think this...
/remove-lifecycle stale /lifecycle frozen /sig node
Are there any plans to make progress on this in the v1.26 cycle?
/assign @bskiba @MaciekPytel @mwielgus PTAL
/lifecycle frozen
I'd like to see this get to beta. Priorities (or requirements) for that include: 1. Annotations (Pod & PodSecurityPolicy) must be moved to fields on the container `SecurityContext` (see https://github.com/kubernetes/community/blob/master/contributors/devel/api_changes.md#alpha-field-in-existing-api-version)...
/cc @destijl
@wangzhen127 is working on it, but can't be assigned as he's not a member yet. https://github.com/kubernetes/kubernetes/pull/62662 https://github.com/kubernetes/kubernetes/pull/62671