goss.yaml 349 B

123456789101112
  1. file:
  2. /var/run/secrets/kubernetes.io/serviceaccount:
  3. exists: {{ .Vars.serviceAccount.automountServiceAccountToken }}
  4. filetype: directory
  5. mode: "3777"
  6. command:
  7. check-user-info:
  8. exec: id
  9. exit-status: 0
  10. stdout:
  11. - uid={{ .Vars.containerSecurityContext.runAsUser }}
  12. - /groups=.*{{ .Vars.podSecurityContext.fsGroup }}/