This repository has been archived by the owner on Jul 20, 2022. It is now read-only.
generated from homecentr/docker-template
-
Notifications
You must be signed in to change notification settings - Fork 0
Commit
This commit does not belong to any branch on this repository, and may belong to a fork outside of the repository.
feat: Support for user, ci/cd fixed (#19)
- Loading branch information
Showing
6 changed files
with
51 additions
and
33 deletions.
There are no files selected for viewing
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -1,12 +1,7 @@ | ||
FROM homecentr/base:1.0.0 as base | ||
|
||
FROM alpine:3.11.2 | ||
FROM homecentr/base:2.0.0-alpine | ||
|
||
LABEL maintainer="Lukas Holota <[email protected]>" | ||
|
||
# Copy S6 overlay and shared scripts | ||
COPY --from=base / / | ||
|
||
# Copy S6 scripts & default configs | ||
COPY ./fs/ / | ||
|
||
|
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -0,0 +1,15 @@ | ||
# Security policy | ||
|
||
## Disclosure policy | ||
|
||
In case you find a security issues with this docker image, please reach out to me at [email protected] and provide 5 business days to release a fixed version. | ||
|
||
## Security update policy | ||
|
||
Known security issues will be published in GitHub repository's Security / Security advisories. | ||
|
||
## Automated processes | ||
|
||
The Docker image is scanned for vulnerabilities every 24 hours using [Phonito.io](https://phonito.io/?b=a). You can see the scan status under the actions tab / Regular Docker image vulnerability scan. | ||
|
||
The dependencies are automatically scanned using [Dependabot](https://dependabot.com/). Dependencies are regularly updated. You can check for pending dependency updates by listing open Pull requests with the "dependencies" label. |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -1,4 +1,4 @@ | ||
#!/usr/bin/with-contenv ash | ||
|
||
chown -R nonroot:nonroot /var/run/named | ||
chown -R nonroot:nonroot /config-default | ||
chown -R "$PUID:$PGID" /var/run/named | ||
chown -R "$PUID:$PGID" /config-default |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -1,5 +1,3 @@ | ||
#!/usr/bin/execlineb -P | ||
#!/usr/bin/with-contenv sh | ||
|
||
s6-setuidgid nonroot | ||
|
||
/usr/sbin/named -f -g -4 -c /config-default/named.conf | ||
exec s6-setuidgid "$PUID:$PGID" /usr/sbin/named -f -g -4 -c /config-default/named.conf |