-
Notifications
You must be signed in to change notification settings - Fork 1.8k
OSDOCS-10289#adding RN in "notable technical changes" #92298
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Conversation
🤖 Wed May 14 17:02:55 - Prow CI generated the docs preview: |
@jianping-shu PTAL when you can. |
=== Pods deploy with readOnlyRootFilesystem set to true | ||
|
||
From {product-title} {product-version}, pods deploy with the `readOnlyRootFilesystem` security context setting set to `true`. This enhances security by ensuring that the container root file system is mounted as read-only. | ||
|
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
If this is the RN for CCO-385, I think it should be like "Cloud Credential Operator pods deploy with the..." more precisely.
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Agree.
|
The rest LGTM. |
@jianping-shu and @huangmingxia I have updated with your suggestion. @jstuever I'd also like to get your signoff on this. |
/cc |
lgtm |
/label peer-review-needed |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Just one suggestion for your consideration, but otherwise LGTM. Nice work!
[id="ocp-4-19-notable-technical-changes-readonlyrootfilesystem_{context}"] | ||
=== Pods deploy with readOnlyRootFilesystem set to true | ||
|
||
From {product-title} {product-version}, Cloud Credential Operator pods deploy with the `readOnlyRootFilesystem` security context setting set to `true`. This enhances security by ensuring that the container root file system is mounted as read-only. |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Nothing you need to change, but just for your consideration - since this is a release note that will only appear in one version of the docs, for these notes you can also use language such as "With this release", because it will be implied that the change is occurring in this-version+
.
From {product-title} {product-version}, Cloud Credential Operator pods deploy with the `readOnlyRootFilesystem` security context setting set to `true`. This enhances security by ensuring that the container root file system is mounted as read-only. | |
With this release, Cloud Credential Operator pods now deploy with the `readOnlyRootFilesystem` security context setting set to `true`. This enhances security by ensuring that the container root file system is mounted as read-only. |
But it's up to you, feel free to choose whichever option sounds better to you.
Updated with peer edits. |
@sslocket: all tests passed! Full PR test history. Your PR dashboard. Instructions for interacting with me using PR comments are available here. If you have questions or suggestions related to my behavior, please file an issue against the kubernetes-sigs/prow repository. I understand the commands that are listed here. |
/label merge-review-needed |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
LGTM
/remove-label merge-review-in-progress
/remove-label merge-review-needed
Version(s):
4.19
Issue:
https://issues.redhat.com/browse/OSDOCS-10289
Link to docs preview:
https://92298--ocpdocs-pr.netlify.app/openshift-enterprise/latest/release_notes/ocp-4-19-release-notes.html#ocp-4-19-notable-technical-changes_release-notes
QE review:
Additional information: