Mounting host directory to the container can be used by attackers to get access to the underlying host.
- Not Configurable
- CronJob
- DaemonSet
- Deployment
- Job
- Pod
- ReplicaSet
- StatefulSet
This Policy checks if hostPath
is mounted to the resource. If hostPath
is mounted, the resource is denied from being deployed in the cluster.