Dedicated system nodes
Definition
Dedicated system nodes refer to computing resources specifically allocated for particular tasks or applications within a larger infrastructure. These nodes are isolated from other workloads to ensure performance, security, and reliability. They are often used in environments where resource contention or security concerns necessitate separation from general-purpose nodes.
Secure Settings Example
apiVersion: v1
kind: Pod
metadata:
name: secure-app
spec:
nodeSelector:
dedicated: secure
securityContext:
runAsUser: 1000
runAsGroup: 3000
fsGroup: 2000
Insecure Settings Example
apiVersion: v1
kind: Pod
metadata:
name: insecure-app
spec:
nodeSelector:
dedicated: general
securityContext:
runAsUser: 0
runAsGroup: 0
fsGroup: 0