defenseunicorns / uds-package-software-factory

Replaced by https://github.com/defenseunicorns/uds-software-factory
Apache License 2.0
8 stars 2 forks source link

Securing gitlab-runner #89

Closed Michael-Kruggel closed 1 year ago

Michael-Kruggel commented 1 year ago

We need to restrict gitlab-runner pod permissions so it can't delete its own cluster etc.

Use RBAC to restrict gitlab-runner Create namespace with zarf.dev/agent: ignore label

Michael-Kruggel commented 1 year ago

87 closes the issue