This issue tracks the work to reduce the permissions required by VolSync.
Goals
By default, both VolSync and the movers should run under the Pod Security Standards "Restricted" policy
It should be possible to securely enable VolSync to run movers with elevated privileges when necessary to preserve permissions/UID/GID during replication
This issue tracks the work to reduce the permissions required by VolSync.
Goals