![]() The "pause" pods that are being run in the scheduling tests are sometimes launched in system namespaces. Therefore even if a test is considered to be running on a "baseline" Pod Security admission level, its "baseline" pods would fail to run if the global PSa enforcement policy is set to "restricted" - the system namespaces have no PSa labels. The "pause" pods run by this test can actually easily run with "restricted" security context, and so this patch turns them into just that. |
||
---|---|---|
.. | ||
events.go | ||
framework.go | ||
limit_range.go | ||
nvidia-gpus.go | ||
OWNERS | ||
predicates.go | ||
preemption.go | ||
priorities.go | ||
ubernetes_lite.go |