- Generate manifest file via cli.
k run appsec-pod --image ubuntu:22.04 --dry-run=client -o yaml > 7.yaml
- Edit manifest by adding security configurations.
# vim 7.yaml
apiVersion: v1
kind: Pod
metadata:
labels:
run: appsec-pod
name: appsec-pod
spec:
containers:
- image: ubuntu:22.04
name: appsec-pod
args:
- sleep
- "4800"
securityContext:
capabilities:
add: ["SYS_TIME"]
runAsUser: 0
- Apply updated changes.
k apply -f 7.yaml