diff --git a/examples/apparmorprofile-sleep.yaml b/examples/apparmorprofile-sleep.yaml index 3b4dd543e1..18afe48e5a 100644 --- a/examples/apparmorprofile-sleep.yaml +++ b/examples/apparmorprofile-sleep.yaml @@ -19,6 +19,7 @@ spec: - setgid - setpcap - sys_admin + - sys_chroot executable: allowedExecutables: - /bin/busybox diff --git a/examples/baseprofile-runc.yaml b/examples/baseprofile-runc.yaml index 341f11f1f8..f2983f20c2 100644 --- a/examples/baseprofile-runc.yaml +++ b/examples/baseprofile-runc.yaml @@ -15,6 +15,7 @@ spec: - capget - capset - chdir + - chroot - clone - clone3 - close