diff --git a/internal/policy-template/tksguard-rego.go b/internal/policy-template/tksguard-rego.go index e19a94bc..89830dbc 100644 --- a/internal/policy-template/tksguard-rego.go +++ b/internal/policy-template/tksguard-rego.go @@ -23,7 +23,7 @@ const tks_guard_rego_rulename = ` # Do not delete following line, added by TKS const tks_guard_rego_rulelogic = ` # Do not delete or edit following rule, managed by TKS ___not_tks_triggered_request___ { - not input.review.userInfo + not input.review.userInfo.username } { tks_users := {"kubernetes-admin","system:serviceaccount:kube-system:argocd-manager"} tks_groups := {"system:masters"}