summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorElizabeth Hunt <me@liz.coffee>2025-07-01 13:29:57 -0700
committerElizabeth Hunt <me@liz.coffee>2025-07-01 13:29:57 -0700
commit62673ce6960a3443310af3fd1dabb7dee7dd5a86 (patch)
treeb655f16ea742a304c0986fcc2540fff9e05aaf56
parenta84c2cf1b6502dc671409811199b1b5aa2b9d673 (diff)
downloadci-62673ce6960a3443310af3fd1dabb7dee7dd5a86.tar.gz
ci-62673ce6960a3443310af3fd1dabb7dee7dd5a86.zip
Add root perms to docker binary for nonroot users e.g. node
-rw-r--r--worker/Dockerfile1
1 files changed, 1 insertions, 0 deletions
diff --git a/worker/Dockerfile b/worker/Dockerfile
index db3da52..51129b2 100644
--- a/worker/Dockerfile
+++ b/worker/Dockerfile
@@ -33,6 +33,7 @@ RUN usermod -a -d /var/lib/laminar -G docker node
COPY --from=worker_dependencies /bw /usr/local/bin/
COPY --from=worker_dependencies /docker/* /usr/local/bin/
+RUN chmod -v a+s /usr/local/bin/docker # give access to run docker binary as sid
USER node
WORKDIR /var/lib/laminar