eclipse-symphony / symphony

Symphony project
MIT License
33 stars 21 forks source link

Limit the ClusteRole permissions in pai-cluster-role.yaml #260

Open LeiQL opened 1 month ago

LeiQL commented 1 month ago

Current rules are granting a range of permissions for all resources "*" in all API groups "*" with all verbs "*" which will cause security concern for review.

msftcoderdjw commented 1 month ago

We consider to have isolation to cover this issue.