Merge pull request #97934 from mattcary/loopback-upstream
Disallow local loopback for volume hosts
This commit is contained in:
		| @@ -1999,6 +1999,7 @@ function start-kube-controller-manager { | ||||
|   params+=("--kubeconfig=${config_path}" "--authentication-kubeconfig=${config_path}" "--authorization-kubeconfig=${config_path}") | ||||
|   params+=("--root-ca-file=${CA_CERT_BUNDLE_PATH}") | ||||
|   params+=("--service-account-private-key-file=${SERVICEACCOUNT_KEY_PATH}") | ||||
|   params+=("--volume-host-allow-local-loopback=false") | ||||
|   if [[ -n "${ENABLE_GARBAGE_COLLECTOR:-}" ]]; then | ||||
|     params+=("--enable-garbage-collector=${ENABLE_GARBAGE_COLLECTOR}") | ||||
|   fi | ||||
|   | ||||
		Reference in New Issue
	
	Block a user
	 Kubernetes Prow Robot
					Kubernetes Prow Robot