Allow operators to override the connection pooler pod- and container-level securityContext via the OperatorConfiguration CRD (connection_pooler_pod_security_context and connection_pooler_security_context). When unset, the operator preserves its historical defaults (pod RunAsUser/RunAsGroup 100/101 and spilo FSGroup; container AllowPrivilegeEscalation=false), so existing deployments are unaffected. Useful for hardened images whose pgbouncer UID/GID differs from the default and for satisfying restricted Pod Security Standards. |
||
|---|---|---|
| .. | ||
| controller.go | ||
| logs_and_api.go | ||
| node.go | ||
| node_test.go | ||
| operator_config.go | ||
| pod.go | ||
| postgresql.go | ||
| postgresql_test.go | ||
| types.go | ||
| util.go | ||
| util_test.go | ||