Skip to content

Fix Kyverno require-valid-owner-reference for Neo4j operations pods#521

Merged
riggi-alekaj merged 4 commits intodevfrom
add-pod-owner-reference
Mar 10, 2026
Merged

Fix Kyverno require-valid-owner-reference for Neo4j operations pods#521
riggi-alekaj merged 4 commits intodevfrom
add-pod-owner-reference

Conversation

@riggi-alekaj
Copy link
Collaborator

  • Convert operations workload from standalone Pod to Job so created Pods have ownerReferences
  • Introduce dedicated operations ServiceAccount with least-privilege RBAC (get on auth secret only)
  • Add securityContext, resource limits, and configurable imagePullPolicy
  • Remove broad secrets access from main Neo4j ServiceAccount

@riggi-alekaj riggi-alekaj requested a review from bfeshti as a code owner March 9, 2026 10:57
@riggi-alekaj riggi-alekaj merged commit 9e8e021 into dev Mar 10, 2026
50 of 57 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants