Use daemon user and group for the service
parent
dee8fe8031
commit
4c9161b660
|
@ -13,15 +13,14 @@ RUN sha256sum goatcounter.gz | grep -q ${GOATCOUNTER_TARBALL_SHA256SUM} && \
|
|||
gunzip goatcounter.gz && \
|
||||
chmod a+x goatcounter
|
||||
|
||||
RUN mkdir /data
|
||||
|
||||
FROM alpine:3.16
|
||||
|
||||
COPY --from=builder /opt/goatcounter /usr/local/bin/goatcounter
|
||||
COPY --from=builder --chown=daemon:daemon /data
|
||||
|
||||
RUN addgroup -S -g 1000 goatcounter && adduser -S -D -H -u 1000 goatcounter -G goatcounter
|
||||
|
||||
RUN mkdir /data
|
||||
|
||||
USER goatcounter
|
||||
WORKDIR /data
|
||||
USER daemon
|
||||
|
||||
ENTRYPOINT goatcounter serve -listen 0.0.0.0:5000 -automigrate -tls none -db "$DATABASE_URL"
|
||||
|
|
Loading…
Reference in New Issue