From d7f3b4aa03f374aa590fc076b8e1c6477a9c2857 Mon Sep 17 00:00:00 2001 From: caskd Date: Thu, 26 Dec 2019 23:36:11 +0100 Subject: [PATCH] Drop priviledges --- build/HAProxy/Dockerfile | 3 ++- build/Varnish/Dockerfile | 3 ++- 2 files changed, 4 insertions(+), 2 deletions(-) diff --git a/build/HAProxy/Dockerfile b/build/HAProxy/Dockerfile index 2d95727..d67c396 100644 --- a/build/HAProxy/Dockerfile +++ b/build/HAProxy/Dockerfile @@ -1,3 +1,4 @@ FROM haproxy:alpine -COPY haproxy.conf /usr/local/etc/haproxy/haproxy.cfg +COPY --chown=nobody:nogroup haproxy.conf /usr/local/etc/haproxy/haproxy.cfg +USER nobody:nogroup diff --git a/build/Varnish/Dockerfile b/build/Varnish/Dockerfile index 05bfb19..b44a430 100644 --- a/build/Varnish/Dockerfile +++ b/build/Varnish/Dockerfile @@ -1,3 +1,4 @@ FROM varnish -COPY varnish.vcl /etc/varnish/default.vcl +COPY --chown=nobody:nogroup varnish.vcl /etc/varnish/default.vcl +USER nobody:nogroup