Allow operators to override the connection pooler pod- and container-level securityContext via the OperatorConfiguration CRD (connection_pooler_pod_security_context and connection_pooler_security_context). When unset, the operator preserves its historical defaults (pod RunAsUser/RunAsGroup 100/101 and spilo FSGroup; container AllowPrivilegeEscalation=false), so existing deployments are unaffected. Useful for hardened images whose pgbouncer UID/GID differs from the default and for satisfying restricted Pod Security Standards. |
||
|---|---|---|
| .. | ||
| config | ||
| constants | ||
| filesystems | ||
| httpclient | ||
| k8sutil | ||
| nicediff | ||
| patroni | ||
| retryutil | ||
| ringlog | ||
| teams | ||
| users | ||
| volumes | ||
| util.go | ||
| util_test.go | ||