Uploaded image for project: 'Jenkins'
  1. Jenkins
  2. JENKINS-65126

specified Linux capabilities via yaml override gets ignored

    • Icon: Bug Bug
    • Resolution: Unresolved
    • Icon: Major Major
    • kubernetes-plugin
    • None
    • Jenkins version:2.263.1
      kubernetes plugin version: 1.29.2

      When specified Linux capabilities via yam override,

      spec:
         containers:
         - name: jnlp
           resources:
             limits:
               memory: "2G"
               cpu: "1"
             requests:
              memory: "2G"
              cpu: "1"
           securityContext:
             capabilities:
               add: ["SYS_ADMIN", "CAP_SETUID", "CAP_SETGID"]
            runAsGroup: 5107
            runAsUser: 5107

       

      The settings for capabilities got ignored.

      The "Show raw yaml in console" doesn't have the capabilities displayed in the console raw yaml.

      name: "jnlp"
      resources:
      limits:
      memory: "2G"
      cpu: "1"
      requests:
      memory: "2G"
      cpu: "1"
      securityContext:
      runAsGroup: 5107
      runAsUser: 5107

          [JENKINS-65126] specified Linux capabilities via yaml override gets ignored

          Yufen Kuo created issue -
          Yufen Kuo made changes -
          Description Original: When specified Linux capabilities via yam override,

          spec:
           containers:
           - name: jnlp
           resources:
           limits:
           memory: "2G"
           cpu: "1"
           requests:
           memory: "2G"
           cpu: "1"
           securityContext:
           capabilities:
           add: ["SYS_ADMIN", "CAP_SETUID", "CAP_SETGID"]
           runAsGroup: 5107
           runAsUser: 5107

           

          The settings for capabilities got ignored.

          The "Show raw yaml in console" doesn't have the capabilities displayed in the console raw yaml.

          name: "jnlp"
           resources:
           limits:
           memory: "2G"
           cpu: "1"
           requests:
           memory: "2G"
           cpu: "1"
           securityContext:
           runAsGroup: 5107
           runAsUser: 5107
          New: When specified Linux capabilities via yam override,

          spec:
           containers:

          name: jnlp
           resources:
           limits:
           memory: "2G"
           cpu: "1"
           requests:
           memory: "2G"
           cpu: "1"
           securityContext:
           capabilities:
           add: ["SYS_ADMIN", "CAP_SETUID", "CAP_SETGID"]
           runAsGroup: 5107
           runAsUser: 5107

           

          The settings for capabilities got ignored.

          The "Show raw yaml in console" doesn't have the capabilities displayed in the console raw yaml.

          name: "jnlp"
           resources:
           limits:
           memory: "2G"
           cpu: "1"
           requests:
           memory: "2G"
           cpu: "1"
           securityContext:
           runAsGroup: 5107
           runAsUser: 5107
          Yufen Kuo made changes -
          Description Original: When specified Linux capabilities via yam override,

          spec:
           containers:

          name: jnlp
           resources:
           limits:
           memory: "2G"
           cpu: "1"
           requests:
           memory: "2G"
           cpu: "1"
           securityContext:
           capabilities:
           add: ["SYS_ADMIN", "CAP_SETUID", "CAP_SETGID"]
           runAsGroup: 5107
           runAsUser: 5107

           

          The settings for capabilities got ignored.

          The "Show raw yaml in console" doesn't have the capabilities displayed in the console raw yaml.

          name: "jnlp"
           resources:
           limits:
           memory: "2G"
           cpu: "1"
           requests:
           memory: "2G"
           cpu: "1"
           securityContext:
           runAsGroup: 5107
           runAsUser: 5107
          New: When specified Linux capabilities via yam override,

          spec:
             containers:
             - name: jnlp
               resources:
                 limits:
                   memory: "2G"
                   cpu: "1"
                 requests:
                  memory: "2G"
                  cpu: "1"
               securityContext:
                 capabilities:
                   add: ["SYS_ADMIN", "CAP_SETUID", "CAP_SETGID"]
                runAsGroup: 5107
                runAsUser: 5107

           

          The settings for capabilities got ignored.

          The "Show raw yaml in console" doesn't have the capabilities displayed in the console raw yaml.

          name: "jnlp"
           resources:
           limits:
           memory: "2G"
           cpu: "1"
           requests:
           memory: "2G"
           cpu: "1"
           securityContext:
           runAsGroup: 5107
           runAsUser: 5107

            Unassigned Unassigned
            ykuo Yufen Kuo
            Votes:
            0 Vote for this issue
            Watchers:
            1 Start watching this issue

              Created:
              Updated: