github.com/khulnasoft-lab/kube-bench@v0.2.1-0.20240330183753-9df52345ae58/job-tkgi.yaml (about)

     1  ---
     2  apiVersion: batch/v1
     3  kind: Job
     4  metadata:
     5    name: kube-bench
     6  spec:
     7    template:
     8      spec:
     9        hostPID: true
    10        containers:
    11          - name: kube-bench
    12            image: docker.io/khulnasoft/kube-bench:latest
    13            command:
    14              [
    15                "kube-bench",
    16                "run",
    17                "--targets",
    18                "node,policies",
    19                "--benchmark",
    20                "tkgi-1.2.53",
    21              ]
    22            volumeMounts:
    23              - name: var-vcap-jobs
    24                mountPath: /var/vcap/jobs
    25                readOnly: true
    26              - name: var-vcap-packages
    27                mountPath: /var/vcap/packages
    28                readOnly: true
    29              - name: var-vcap-store-etcd
    30                mountPath: /var/vcap/store/etcd
    31                readOnly: true
    32              - name: var-vcap-sys
    33                mountPath: /var/vcap/sys
    34                readOnly: true
    35              - name: etc-kubernetes
    36                mountPath: /etc/kubernetes
    37                readOnly: true
    38        restartPolicy: Never
    39        volumes:
    40          - name: var-vcap-jobs
    41            hostPath:
    42              path: "/var/vcap/jobs"
    43          - name: var-vcap-packages
    44            hostPath:
    45              path: "/var/vcap/packages"
    46          - name: var-vcap-store-etcd
    47            hostPath:
    48              path: "/var/vcap/store/etcd"
    49          - name: var-vcap-sys
    50            hostPath:
    51              path: "/var/vcap/sys"
    52          - name: etc-kubernetes
    53            hostPath:
    54              path: "/etc/kubernetes"