kiva / protocol-common

Shared code across the various protocol microservices
Apache License 2.0
10 stars 3 forks source link

Run Dockerfile command as nonroot user #5

Closed ghost closed 4 years ago

ghost commented 4 years ago

Signed-off-by: Jeff Kennedy jeffk@kiva.org

🔥 🐞 🙋 🚫 🚀

(Click here if you don't understand these emojis)

What issue is this targeting? IoActive noted that Dockerfiles were executing commands and running apps as root users, which is a security issue.

Changes proposed in this pull request Run Dockerfile command as nonroot user.

🚀 Deployment changes 🚀
(list added or removed env, db changes etc)

Other Notes