Browse Source

Run Docker containes as non-root user

DarthSim 3 years ago
parent
commit
95d8f5687c
1 changed files with 3 additions and 0 deletions
  1. 3 0
      docker/Dockerfile

+ 3 - 0
docker/Dockerfile

@@ -32,6 +32,9 @@ ENV VIPS_WARNING=0
 ENV MALLOC_ARENA_MAX=2
 ENV MALLOC_ARENA_MAX=2
 ENV LD_LIBRARY_PATH /usr/local/lib
 ENV LD_LIBRARY_PATH /usr/local/lib
 
 
+RUN groupadd -r imgproxy && useradd -r -g imgproxy imgproxy
+USER imgproxy
+
 CMD ["imgproxy"]
 CMD ["imgproxy"]
 
 
 EXPOSE 8080
 EXPOSE 8080