From 87efb615bb2bd278e8a33d1dc88d6ca49a2aedf6 Mon Sep 17 00:00:00 2001 From: Ploc <391-ploc@users.noreply.framagit.org> Date: Fri, 3 Dec 2021 10:35:01 +0100 Subject: [PATCH] feat: container is able to run as non-root --- Dockerfile | 7 +++++-- docker/build.sh | 0 docker/entrypoint.sh | 0 3 files changed, 5 insertions(+), 2 deletions(-) mode change 100644 => 100755 docker/build.sh mode change 100644 => 100755 docker/entrypoint.sh diff --git a/Dockerfile b/Dockerfile index ce57106..71d22a1 100644 --- a/Dockerfile +++ b/Dockerfile @@ -12,8 +12,11 @@ LABEL org.label-schema.build-date=$BUILD_DATE \ org.label-schema.version=$VERSION \ org.label-schema.schema-version="1.0" -RUN adduser -D lutim -COPY --chown=lutim:lutim . /home/lutim +RUN adduser -D lutim \ + && addgroup lutim root + +COPY . /home/lutim +RUN chmod -R g+rwX /home/lutim WORKDIR /home/lutim RUN /bin/sh /home/lutim/docker/build.sh diff --git a/docker/build.sh b/docker/build.sh old mode 100644 new mode 100755 diff --git a/docker/entrypoint.sh b/docker/entrypoint.sh old mode 100644 new mode 100755