From ab2704a6f5a9ce2031cca03bc610b0e7c02553df Mon Sep 17 00:00:00 2001 From: AndrewLamb Date: Wed, 5 Apr 2023 14:45:11 +0100 Subject: [SO] Create Authorization Policies for SO - Create Authoriation Policies for SO - Add in initial authorized serviceaccounts for each sub component service Issue-ID: OOM-3128 Change-Id: Id18b7bb6cdb180b1173966e797032118b5b20621 Signed-off-by: AndrewLamb --- kubernetes/so/components/so-sdc-controller/values.yaml | 6 ++++++ 1 file changed, 6 insertions(+) (limited to 'kubernetes/so/components/so-sdc-controller/values.yaml') diff --git a/kubernetes/so/components/so-sdc-controller/values.yaml b/kubernetes/so/components/so-sdc-controller/values.yaml index 81ae6ae7fd..8b17efc390 100755 --- a/kubernetes/so/components/so-sdc-controller/values.yaml +++ b/kubernetes/so/components/so-sdc-controller/values.yaml @@ -133,6 +133,12 @@ livenessProbe: ingress: enabled: false +serviceMesh: + authorizationPolicy: + authorizedPrincipals: + - serviceAccount: robot-read + - serviceAccount: so-read + nodeSelector: {} tolerations: [] affinity: {} -- cgit 1.2.3-korg