Files
kubernetes-security-baselin…/deployments/argocd/apps/policies.yaml
T
swaphb fc53e16dd4
Kube-bench CIS scan / Scan ephemeral K3s cluster (push) Successful in 1m6s
organize deployment configuration
2026-08-15 13:17:46 -04:00

24 lines
592 B
YAML

apiVersion: argoproj.io/v1alpha1
kind: Application
metadata:
name: security-policies
namespace: argocd
annotations:
# Policies wait for Kyverno's CRDs/controller to exist.
argocd.argoproj.io/sync-wave: "0"
spec:
project: default
source:
repoURL: https://git.swaphb.com/swaphb/kubernetes-security-baseline-lab.git
targetRevision: main
path: policies/kyverno
destination:
server: https://kubernetes.default.svc
namespace: security-baseline
syncPolicy:
automated:
prune: true
selfHeal: true
syncOptions:
- CreateNamespace=true