Skip to content

Conversation

candrews
Copy link

Running as a non-root user is a security best practice. Some environments require containers run as non-root users.

For the USER directive, a numeric uid is specified instead of the username because systems configured to disallow running images as root aren't able to run images that use user name string values for the USER because they can't validate that a named user isn't root. See kubernetes/kubernetes#56503 for details.

Running as a non-root user is a security best practice. Some environments require containers run as non-root users.

For the `USER` directive, a numeric uid is specified instead of the username because systems configured to disallow running images as root aren't able to run images that use user name string values for the `USER` because they can't validate that a named user isn't root. See kubernetes/kubernetes#56503 for details.
@larsoner
Copy link
Member

CI errors seem related

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants