Skip to content

Rootless #147

@Syndlex

Description

@Syndlex

Hey,

there are some security concerns running this we have when running this container.

  1. Please switch to https://hub.docker.com/r/nginxinc/nginx-unprivileged image in the running image.
  • This allows read only root Filesystems
  • This allows dropping all capabilities because it doesn't mount port 80
  1. It would be greate if you can remove chown.

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions