diff --git a/Dockerfile b/Dockerfile index aeea769..f1ebfd6 100644 --- a/Dockerfile +++ b/Dockerfile @@ -13,10 +13,23 @@ RUN apk add --update curl bash coreutils \ && curl -L https://storage.googleapis.com/kubernetes-release/release/${KUBECTL_VERSION}/bin/linux/${ARCH}/kubectl -o /usr/local/bin/kubectl \ && chmod +x /usr/local/bin/kubectl -ADD bin /bin -ADD monitor /monitor -ADD dind-metrics /dind-metrics -ADD local-volumes /local-volumes +# add user +RUN addgroup --gid 1000 dind-volume-utils && \ + adduser --uid 1000 --gecos "" --disabled-password \ + --ingroup dind-volume-utils \ + --home /home/dind-volume-utils \ + --shell /bin/bash dind-volume-utils +WORKDIR /home/dind-volume-utils + +ADD bin ./bin +ADD monitor ./monitor +ADD dind-metrics ./dind-metrics +ADD local-volumes ./local-volumes + +RUN chown -R dind-volume-utils:dind-volume-utils /home/dind-volume-utils && \ + chmod 755 /home/dind-volume-utils + +USER dind-volume-utils:dind-volume-utils CMD ["/bin/bash"] diff --git a/service.yaml b/service.yaml index 0e17c2a..e5c385f 100644 --- a/service.yaml +++ b/service.yaml @@ -1 +1 @@ -version: 1.29.2 \ No newline at end of file +version: 1.29.3