diff --git a/busybox.yaml b/busybox.yaml index 0d24d74..dbbf501 100644 --- a/busybox.yaml +++ b/busybox.yaml @@ -14,6 +14,8 @@ spec: labels: app: busybox spec: + securityContext: + runAsNonRoot: true containers: - name: busybox image: busybox diff --git a/insecure-app.yaml b/insecure-app.yaml index 93339aa..4974ead 100644 --- a/insecure-app.yaml +++ b/insecure-app.yaml @@ -14,6 +14,8 @@ spec: labels: app: insecure-app spec: + securityContext: + runAsNonRoot: true containers: - image: confusedcrib/insecure-app:latest name: insecure-app