coreos/container-linux-update-operator

create dbus policy to run as non-root

philips opened this issue · 0 comments

It would be ideal if the CLUO could run as non-root. We would need to allocate a UID on CL, update the daemonset security context to use this UID, and add it here to make it happen: https://github.com/coreos/update_engine/blob/eb3900ad78747eb29e5023067c98d5623baa4e9b/com.coreos.update1.conf#L4