Joery / docker-traefik

My Docker setup with Traefik, Authelia and a bunch of other applications.
MIT License
3 stars 1 forks source link

All: Migrate Docker to Rootless mode #1

Open Joery opened 11 months ago

Joery commented 11 months ago

Fix for commit b39b2e23d11cadc0abf3a49111466502d3b0dbba

Joery commented 6 months ago

Run the Docker daemon as a non-root user (Rootless mode)

Expose Docker API socket through TCP for socket-proxy

Exposing privileged ports to use port 443

Keep process running so the containers don't exit on logout

setcap cap_net_bind_service=ep $(which rootlesskit)
systemctl --user restart docker

nano /etc/sysctl.conf
net.ipv4.ip_unprivileged_port_start=0
sysctl --system