kubernetes policiesPodsDo not admit containers with SYS_ADMIN capabilitySYS_ADMIN gives the container many privileges, and should be avoided.Updated 7 months ago Do not admit root containersDo not generally permit containers with allowPrivilegeEscalationAsk AI