From 45037eb3cbd86b97e10bd9e2f9fbdd4b4d3980c3 Mon Sep 17 00:00:00 2001 From: JJGadgets Date: Mon, 15 Apr 2024 16:13:26 +0800 Subject: [PATCH] fix(minio-nas): PSS, rm custom iSCSI initiator --- kube/deploy/core/storage/minio-nas/app/hr.yaml | 3 +-- kube/deploy/core/storage/minio-nas/ns.yaml | 2 +- 2 files changed, 2 insertions(+), 3 deletions(-) diff --git a/kube/deploy/core/storage/minio-nas/app/hr.yaml b/kube/deploy/core/storage/minio-nas/app/hr.yaml index 34be2814..4294705e 100644 --- a/kube/deploy/core/storage/minio-nas/app/hr.yaml +++ b/kube/deploy/core/storage/minio-nas/app/hr.yaml @@ -109,8 +109,7 @@ spec: iscsi: targetPortal: "${IP_TRUENAS}:3260" iqn: "${CONFIG_TRUENAS_IQN}:minio" - lun: "0" - initiatorName: "{{ .Release.Name }}" + lun: 0 fsType: "xfs" # MinIO recommendation globalMounts: - subPath: "data" diff --git a/kube/deploy/core/storage/minio-nas/ns.yaml b/kube/deploy/core/storage/minio-nas/ns.yaml index 77835990..dca0c67e 100644 --- a/kube/deploy/core/storage/minio-nas/ns.yaml +++ b/kube/deploy/core/storage/minio-nas/ns.yaml @@ -5,6 +5,6 @@ metadata: name: minio-nas labels: kustomize.toolkit.fluxcd.io/prune: disabled - pod-security.kubernetes.io/enforce: &ps restricted + pod-security.kubernetes.io/enforce: &ps baseline pod-security.kubernetes.io/audit: *ps pod-security.kubernetes.io/warn: *ps