[MEDIUM] Pod Security Admission (Restricted) #16

Closed
opened 2026-07-28 14:31:48 +00:00 by sorb · 1 comment
Owner

Apply Restricted Pod Security Admission to the matrix and authentik namespaces: enforce non-root, no privileged containers, read-only root filesystem. Test carefully for chart breakage before enforcing.

Apply Restricted Pod Security Admission to the `matrix` and `authentik` namespaces: enforce non-root, no privileged containers, read-only root filesystem. Test carefully for chart breakage before enforcing.
sorb added the priority:mediumarea:security labels 2026-07-28 14:31:48 +00:00
Author
Owner

Migriert nach git.lab: axion1337.chat/axion1337.chat-gitops#16 (nur im Lab bzw. via VPN erreichbar — das Lab ist seit 2026-08-01 die Quelle der Wahrheit, siehe gitops#48). Weiterarbeit dort; dieses Gitea-Issue bleibt als Verweis stehen.

**Migriert nach git.lab**: [axion1337.chat/axion1337.chat-gitops#16](https://git.lab/axion1337.chat/axion1337.chat-gitops/-/issues/16) (nur im Lab bzw. via VPN erreichbar — das Lab ist seit 2026-08-01 die Quelle der Wahrheit, siehe gitops#48). Weiterarbeit dort; dieses Gitea-Issue bleibt als Verweis stehen.
sorb closed this issue 2026-08-01 14:26:00 +00:00
Sign in to join this conversation.
1 Participants
Notifications
Due Date
No due date set.
Dependencies

No dependencies set.

Reference: sorb/axion1337.chat-gitops#16