Skip to content

Commit

Permalink
Merge branch 'master' into 202308111623_local_endianness
Browse files Browse the repository at this point in the history
  • Loading branch information
sarroutbi authored Aug 11, 2023
2 parents 64d00ca + 5965a15 commit 4f46f43
Show file tree
Hide file tree
Showing 3 changed files with 9 additions and 0 deletions.
3 changes: 3 additions & 0 deletions docker/release/Dockerfile.distroless
Original file line number Diff line number Diff line change
Expand Up @@ -95,5 +95,8 @@ LABEL install="podman volume create keylime-agent"
LABEL uninstall="podman volume rm keylime-agent"
LABEL run="podman run --read-only --name keylime-agent --rm --device /dev/tpm0 --device /dev/tpmrm0 -v keylime-agent:/var/lib/keylime -v /etc/keylime:/etc/keylime:ro --tmpfs /var/lib/keylime/secure:rw,size=1m,mode=0700 -dt IMAGE"

# Create a system user 'keylime' to allow dropping privileges
RUN useradd -s /sbin/nologin -r -G tss keylime

# run as root by default
USER 0:0
3 changes: 3 additions & 0 deletions docker/release/Dockerfile.fedora
Original file line number Diff line number Diff line change
Expand Up @@ -64,5 +64,8 @@ LABEL install="podman volume create keylime-agent"
LABEL uninstall="podman volume rm keylime-agent"
LABEL run="podman run --read-only --name keylime-agent --rm --device /dev/tpm0 --device /dev/tpmrm0 -v keylime-agent:/var/lib/keylime -v /etc/keylime:/etc/keylime:ro --tmpfs /var/lib/keylime/secure:rw,size=1m,mode=0700 -dt IMAGE"

# Create a system user 'keylime' to allow dropping privileges
RUN useradd -s /sbin/nologin -r -G tss keylime

# run as root by default
USER 0:0
3 changes: 3 additions & 0 deletions docker/release/Dockerfile.wolfi
Original file line number Diff line number Diff line change
Expand Up @@ -106,5 +106,8 @@ LABEL install="podman volume create keylime-agent"
LABEL uninstall="podman volume rm keylime-agent"
LABEL run="podman run --read-only --name keylime-agent --rm --device /dev/tpm0 --device /dev/tpmrm0 -v keylime-agent:/var/lib/keylime -v /etc/keylime:/etc/keylime:ro --tmpfs /var/lib/keylime/secure:rw,size=1m,mode=0700 -dt IMAGE"

# Create a system user 'keylime' to allow dropping privileges
RUN useradd -s /sbin/nologin -r -G tss keylime

# run as root by default
USER 0:0

0 comments on commit 4f46f43

Please sign in to comment.