Fix bug 1703 - Adding non-root user to run NBI
[osm/devops.git] / installers / docker / osm_pods / nbi.yaml
index 54f7257..bbdf645 100644 (file)
@@ -44,13 +44,17 @@ spec:
       labels:
         app: nbi
     spec:
+      securityContext:
+        runAsUser: 1000
+        runAsGroup: 1000
+        fsGroup: 1000
       initContainers:
       - name: kafka-mongo-test
         image: alpine:latest
         command: ["sh", "-c", "until (nc -zvw1 kafka 9092 && nc -zvw1 mongodb-k8s 27017); do sleep 3; done; exit 0"]
       containers:
       - name: nbi
-        image: opensourcemano/nbi:10
+        image: opensourcemano/nbi:11
         ports:
         - containerPort: 9999
           protocol: TCP
@@ -70,10 +74,3 @@ spec:
         envFrom:
         - secretRef:
            name: nbi-secret
-        volumeMounts:
-         - name: osm-packages
-           mountPath: /app/storage
-      volumes:
-       - name: osm-packages
-         hostPath:
-          path: /var/lib/osm/osm_osm_packages/_data