diff --git a/pkg/controller/audit/actuator.go b/pkg/controller/audit/actuator.go index f29ae47..7487a2c 100644 --- a/pkg/controller/audit/actuator.go +++ b/pkg/controller/audit/actuator.go @@ -1015,6 +1015,7 @@ func shootObjects(auditConfig *v1alpha1.AuditConfig, secrets map[string]*corev1. }, SecurityContext: &corev1.SecurityContext{ RunAsUser: pointer.Pointer(int64(65534)), + RunAsNonRoot: pointer.Pointer(true), AllowPrivilegeEscalation: pointer.Pointer(false), SeccompProfile: &corev1.SeccompProfile{ Type: corev1.SeccompProfileTypeRuntimeDefault,