Code Review
/
portal.git
/ commitdiff
commit
grep
author
committer
pickaxe
?
search:
re
summary
|
shortlog
|
log
|
commit
| commitdiff |
review
|
tree
raw
|
patch
| inline |
side by side
(parent:
ae737cb
)
Migrate Dockerfile.be to unprivileged user
23/104923/1
author
Pawel Wieczorek
<p.wieczorek2@samsung.com>
Mon, 30 Mar 2020 09:40:12 +0000
(11:40 +0200)
committer
Sunder Tattavarada
<statta@research.att.com>
Fri, 3 Apr 2020 16:48:25 +0000
(16:48 +0000)
Issue-ID: PORTAL-849
Change-Id: I58fe742980a24039114033a82fe785a1093391bf
Signed-off-by: Pawel Wieczorek <p.wieczorek2@samsung.com>
(cherry picked from commit
047385e55632a1dd6398e414aa82397f380e449f
)
deliveries/Dockerfile.be
patch
|
blob
|
history
diff --git
a/deliveries/Dockerfile.be
b/deliveries/Dockerfile.be
index
afc3981
..
21bb1a2
100644
(file)
--- a/
deliveries/Dockerfile.be
+++ b/
deliveries/Dockerfile.be
@@
-39,7
+39,9
@@
RUN cd ${PORTALCONTEXT} && unzip -q *.war && rm *.war
VOLUME ${TOMCATHOME}/logs
+# Switch to unprivileged user
RUN addgroup -g 1000 -S portal && adduser -u 1000 -S portal -G portal && chown -R portal:portal . && chmod -R 777 /etc/ssl/certs/java /var/
+USER portal
# Switch back to root
WORKDIR /