From 545dd3ad93724a56632d80f5927bf0d414edbbcb Mon Sep 17 00:00:00 2001 From: Jon Phenow Date: Wed, 21 May 2025 15:57:57 -0500 Subject: [PATCH] permit root so our new image that adjusts oom score can still boot --- internal/initialize/security.go | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/internal/initialize/security.go b/internal/initialize/security.go index f351a5cefe..02f93c505e 100644 --- a/internal/initialize/security.go +++ b/internal/initialize/security.go @@ -39,7 +39,7 @@ func RestrictedSecurityContext(enableSeccompProfile bool) *corev1.SecurityContex ReadOnlyRootFilesystem: Bool(true), // Fail to start the container if its image runs as UID 0 (root). - RunAsNonRoot: Bool(true), + RunAsNonRoot: Bool(false), } if enableSeccompProfile {