diff --git a/components/hydra-oidc/resources/hydra-oidc-deployment.yaml b/components/hydra-oidc/resources/hydra-oidc-deployment.yaml index 42f3bc2..e4d1e7e 100644 --- a/components/hydra-oidc/resources/hydra-oidc-deployment.yaml +++ b/components/hydra-oidc/resources/hydra-oidc-deployment.yaml @@ -46,6 +46,10 @@ spec: - configMapRef: name: hydra-oidc-env resources: {} + securityContext: + runAsNonRoot: true + runAsGroup: 1000 + runAsUser: 1000 - image: reg.cadoles.com/cmsassot/hydra-oidc-test:latest imagePullPolicy: Always @@ -90,4 +94,8 @@ spec: - name: CADDY_APP_ROOT_PUBLIC value: "/app/public/" resources: {} + securityContext: + runAsNonRoot: true + runAsGroup: 1000 + runAsUser: 1000 restartPolicy: Always