Merge pull request #8972 from quadespresso/ucp-admin-field-1770

Clarify which admin is required to use privileged options
This commit is contained in:
paigehargrave 2019-06-21 13:37:29 -04:00 committed by GitHub
commit d02cc3d6ff
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23
1 changed files with 2 additions and 2 deletions

View File

@ -99,8 +99,8 @@ resources.
## Secure Kubernetes defaults
For cluster security, only users and service accounts granted the
`cluster-admin` ClusterRole for all Kubernetes namespaces via a
For cluster security, only UCP admin users and service accounts that are
granted the `cluster-admin` ClusterRole for all Kubernetes namespaces via a
ClusterRoleBinding can deploy pods with privileged options. This prevents a
platform user from being able to bypass the Universal Control Plane Security
Model. These privileged options include: