From 93eb0ced29c4df4344b51ef611870232edb73771 Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?Vicente=20J=2E=20Jim=C3=A9nez=20Miras?= Date: Tue, 17 Jan 2023 16:48:52 +0000 Subject: [PATCH] [en] Update entry for SELinuxMountReadWriteOncePod MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit Signed-off-by: Vicente J. Jiménez Miras --- .../reference/command-line-tools-reference/feature-gates.md | 6 +++--- 1 file changed, 3 insertions(+), 3 deletions(-) diff --git a/content/en/docs/reference/command-line-tools-reference/feature-gates.md b/content/en/docs/reference/command-line-tools-reference/feature-gates.md index 3e5e7a6385..070dea9e12 100644 --- a/content/en/docs/reference/command-line-tools-reference/feature-gates.md +++ b/content/en/docs/reference/command-line-tools-reference/feature-gates.md @@ -685,9 +685,9 @@ Each feature gate is designed for enabling/disabling a specific feature: - `RotateKubeletServerCertificate`: Enable the rotation of the server TLS certificate on the kubelet. See [kubelet configuration](/docs/reference/access-authn-authz/kubelet-tls-bootstrapping/#kubelet-configuration) for more details. -- `SELinuxMountReadWriteOncePod`: Speed up container startup by mounting volumes with the correct - SELinux label instead of changing each file on the volumes recursively. The initial implementation - focused on ReadWriteOncePod volumes. +- `SELinuxMountReadWriteOncePod`: Speeds up container startup by allowing kubelet to mount volumes + for a Pod directly with the correct SELinux label instead of changing each file on the volumes + recursively. The initial implementation focused on ReadWriteOncePod volumes. - `SeccompDefault`: Enables the use of `RuntimeDefault` as the default seccomp profile for all workloads. The seccomp profile is specified in the `securityContext` of a Pod and/or a Container.