diff --git a/e2e/cephfs.go b/e2e/cephfs.go index eca9a5a37..c2271b728 100644 --- a/e2e/cephfs.go +++ b/e2e/cephfs.go @@ -29,6 +29,7 @@ import ( clientset "k8s.io/client-go/kubernetes" "k8s.io/kubernetes/test/e2e/framework" e2elog "k8s.io/kubernetes/test/e2e/framework/log" + "k8s.io/pod-security-admission/api" ) var ( @@ -146,6 +147,7 @@ func validateSubvolumePath(f *framework.Framework, pvcName, pvcNamespace, fileSy var _ = Describe(cephfsType, func() { f := framework.NewDefaultFramework(cephfsType) + f.NamespacePodSecurityEnforceLevel = api.LevelPrivileged var c clientset.Interface // deploy CephFS CSI BeforeEach(func() { diff --git a/e2e/nfs.go b/e2e/nfs.go index 5aca3dd06..96ef72949 100644 --- a/e2e/nfs.go +++ b/e2e/nfs.go @@ -32,6 +32,7 @@ import ( clientset "k8s.io/client-go/kubernetes" "k8s.io/kubernetes/test/e2e/framework" e2elog "k8s.io/kubernetes/test/e2e/framework/log" + "k8s.io/pod-security-admission/api" ) var ( @@ -236,6 +237,7 @@ func unmountNFSVolume(f *framework.Framework, appName, pvcName string) error { var _ = Describe("nfs", func() { f := framework.NewDefaultFramework("nfs") + f.NamespacePodSecurityEnforceLevel = api.LevelPrivileged var c clientset.Interface // deploy CephFS CSI BeforeEach(func() { diff --git a/e2e/rbd.go b/e2e/rbd.go index 649fd5d93..217d50b72 100644 --- a/e2e/rbd.go +++ b/e2e/rbd.go @@ -33,6 +33,7 @@ import ( clientset "k8s.io/client-go/kubernetes" "k8s.io/kubernetes/test/e2e/framework" e2elog "k8s.io/kubernetes/test/e2e/framework/log" + "k8s.io/pod-security-admission/api" ) var ( @@ -252,6 +253,7 @@ func ByFileAndBlockEncryption( var _ = Describe("RBD", func() { f := framework.NewDefaultFramework(rbdType) + f.NamespacePodSecurityEnforceLevel = api.LevelPrivileged var c clientset.Interface var kernelRelease string // deploy RBD CSI diff --git a/e2e/upgrade-cephfs.go b/e2e/upgrade-cephfs.go index 5233c0002..02095db65 100644 --- a/e2e/upgrade-cephfs.go +++ b/e2e/upgrade-cephfs.go @@ -30,10 +30,12 @@ import ( clientset "k8s.io/client-go/kubernetes" "k8s.io/kubernetes/test/e2e/framework" e2elog "k8s.io/kubernetes/test/e2e/framework/log" + "k8s.io/pod-security-admission/api" ) var _ = Describe("CephFS Upgrade Testing", func() { f := framework.NewDefaultFramework("upgrade-test-cephfs") + f.NamespacePodSecurityEnforceLevel = api.LevelPrivileged var ( c clientset.Interface pvc *v1.PersistentVolumeClaim diff --git a/e2e/upgrade-rbd.go b/e2e/upgrade-rbd.go index 3b200fe96..8cfe762ee 100644 --- a/e2e/upgrade-rbd.go +++ b/e2e/upgrade-rbd.go @@ -30,10 +30,12 @@ import ( clientset "k8s.io/client-go/kubernetes" "k8s.io/kubernetes/test/e2e/framework" e2elog "k8s.io/kubernetes/test/e2e/framework/log" + "k8s.io/pod-security-admission/api" ) var _ = Describe("RBD Upgrade Testing", func() { f := framework.NewDefaultFramework("upgrade-test-rbd") + f.NamespacePodSecurityEnforceLevel = api.LevelPrivileged var ( // cwd stores the initial working directory. cwd string