diff --git a/services/monitoring/platform-quality-gateway-deployment.yaml b/services/monitoring/platform-quality-gateway-deployment.yaml index 52bf0b6d..6cea2733 100644 --- a/services/monitoring/platform-quality-gateway-deployment.yaml +++ b/services/monitoring/platform-quality-gateway-deployment.yaml @@ -22,6 +22,9 @@ spec: labels: app: platform-quality-gateway spec: + securityContext: + fsGroup: 65534 + fsGroupChangePolicy: OnRootMismatch affinity: nodeAffinity: requiredDuringSchedulingIgnoredDuringExecution: @@ -43,6 +46,10 @@ spec: containers: - name: pushgateway image: prom/pushgateway:v1.11.2 + securityContext: + runAsGroup: 65534 + runAsNonRoot: true + runAsUser: 65534 args: - --web.listen-address=:9091 - --web.enable-admin-api