From e274a0c5991bea8e76b6204766f3a0b931647a1f Mon Sep 17 00:00:00 2001 From: Alexey Kuklin <alex@kuklin.eu> Date: Wed, 18 Mar 2020 16:27:24 +0200 Subject: [PATCH] non-user run --- Dockerfile | 6 +++++- 1 file changed, 5 insertions(+), 1 deletion(-) diff --git a/Dockerfile b/Dockerfile index 0b36d08..e2bfbac 100644 --- a/Dockerfile +++ b/Dockerfile @@ -3,10 +3,13 @@ FROM buildpack-deps:buster-curl RUN apt-get update && apt-get install -y ca-certificates libgs9 mime-support \ && apt-get clean autoclean \ && apt-get autoremove --yes \ - && rm -rf /var/lib/apt/lists/* + && rm -rf /var/lib/apt/lists/* \ + && groupadd -g 1001 vereign && useradd -u 1001 vereign WORKDIR /srv + + ONBUILD ARG CI_COMMIT_REF_NAME ONBUILD ARG CI_COMMIT_SHA @@ -20,3 +23,4 @@ ONBUILD LABEL project=$CI_PROJECT_NAME-$CI_COMMIT_REF_NAME ONBUILD RUN git config --global url."https://$GITLAB_LOGIN:$GITLAB_PASSWORD@code.vereign.com".insteadOf "https://code.vereign.com" +USER vereign -- GitLab