ci: use ietfa uid/gid for datatracker user (#7407)
* ci: use ietfa uid/gid for datatracker user * chore: add comment
This commit is contained in:
parent
7e56b2e923
commit
dd46a8af6f
|
@ -3,8 +3,9 @@ LABEL maintainer="IETF Tools Team <tools-discuss@ietf.org>"
|
||||||
|
|
||||||
ENV DEBIAN_FRONTEND=noninteractive
|
ENV DEBIAN_FRONTEND=noninteractive
|
||||||
|
|
||||||
RUN groupadd -g 1000 datatracker && \
|
# uid 498 = wwwrun and gid 496 = www on ietfa
|
||||||
useradd -c "Datatracker User" -u 1000 -g datatracker -m -s /bin/false datatracker
|
RUN groupadd -g 496 datatracker && \
|
||||||
|
useradd -c "Datatracker User" -u 498 -g datatracker -m -s /bin/false datatracker
|
||||||
|
|
||||||
RUN apt-get purge -y imagemagick imagemagick-6-common
|
RUN apt-get purge -y imagemagick imagemagick-6-common
|
||||||
|
|
||||||
|
|
|
@ -64,8 +64,8 @@ spec:
|
||||||
drop:
|
drop:
|
||||||
- ALL
|
- ALL
|
||||||
readOnlyRootFilesystem: true
|
readOnlyRootFilesystem: true
|
||||||
runAsUser: 1000
|
runAsUser: 498 # wwwrun uid on ietfa
|
||||||
runAsGroup: 1000
|
runAsGroup: 496 # www group on ietfa
|
||||||
volumes:
|
volumes:
|
||||||
# To be overriden with the actual shared volume
|
# To be overriden with the actual shared volume
|
||||||
- name: dt-vol
|
- name: dt-vol
|
||||||
|
|
Loading…
Reference in a new issue