run as non-root in docker (#38)

This commit is contained in:
Xiaonan Shen
2021-09-04 11:10:58 +08:00
committed by GitHub
3 changed files with 15 additions and 3 deletions

View File

@@ -25,4 +25,11 @@ COPY gpgparams entrypoint.sh /protonmail/
# Copy protonmail
COPY --from=build /build/proton-bridge/proton-bridge /protonmail/
# Add a user 'protonmail' with UID 8535
RUN useradd -u 8535 -d /home/protonmail protonmail \
&& mkdir -p /home/protonmail \
&& chown protonmail: /home/protonmail
# change to non-privileged user for extra security
USER protonmail
ENTRYPOINT ["bash", "/protonmail/entrypoint.sh"]

View File

@@ -2,6 +2,11 @@
set -ex
id
# Go to current user's homedir
cd
echo $PWD
# Initialize
if [[ $1 == init ]]; then