-
Notifications
You must be signed in to change notification settings - Fork 18
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
run as user / non root #13
Comments
Why? Is it so that files it creates have the right owner? |
Xeoma can be run as unprivileged user, so it is a huge security improvement. |
So, I looked into this a bit, and it appears that the problem is that phusion-baseimage does some things that require root, so no matter what, the container will require to be run as root. However, I believe phusion also has a utility to run individual processes (in this case, xeoma.app) as a different user. But I need to investigate how that is actually accomplished. |
This would be great, thank you. |
Currently it's not possible to run the container as a different user which should be possible as xeoma does not require root.
The text was updated successfully, but these errors were encountered: