Merge "Enable pod security policies"
[icn.git] / deploy / clusters / templates / kubeadmcontrolplane.yaml
index a77d992..99c8bef 100644 (file)
@@ -6,6 +6,10 @@ metadata:
   name: {{ $clusterName }}
 spec:
   kubeadmConfigSpec:
+    clusterConfiguration:
+      apiServer:
+        extraArgs:
+          enable-admission-plugins: NodeRestriction,PodSecurityPolicy
     initConfiguration:
       nodeRegistration:
         kubeletExtraArgs: