浏览代码

Merge pull request #31820 from ehazlett/secrets-restrict

Restrict secret view to node level in controller
Vincent Demeester 8 年之前
父节点
当前提交
0fe41cc4db
共有 1 个文件被更改,包括 1 次插入1 次删除
  1. 1 1
      daemon/cluster/executor/container/executor.go

+ 1 - 1
daemon/cluster/executor/container/executor.go

@@ -152,7 +152,7 @@ func (e *executor) Controller(t *api.Task) (exec.Controller, error) {
 		return newNetworkAttacherController(e.backend, t, e.secrets)
 	}
 
-	ctlr, err := newController(e.backend, t, e.secrets)
+	ctlr, err := newController(e.backend, t, secrets.Restrict(e.secrets, t))
 	if err != nil {
 		return nil, err
 	}