From 5f4c074115989329cb8cbec3b41f778abc736780 Mon Sep 17 00:00:00 2001 From: Michael Sauter Date: Wed, 15 Feb 2023 14:10:23 +0100 Subject: [PATCH] Use group 0 for build user --- build/package/Dockerfile.package-image | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/build/package/Dockerfile.package-image b/build/package/Dockerfile.package-image index 5272d4b1..3bbee30e 100644 --- a/build/package/Dockerfile.package-image +++ b/build/package/Dockerfile.package-image @@ -24,7 +24,7 @@ ENV BUILDAH_VERSION=1.27 \ COPY --from=builder /usr/local/bin/ods-package-image /usr/local/bin/ods-package-image # Don't include container-selinux and remove directories used by yum that are just taking up space. -RUN useradd -u 1001 build \ +RUN useradd -u 1001 -g 0 build \ && dnf -y module enable container-tools:rhel8 \ && dnf -y update \ && dnf -y reinstall shadow-utils \ @@ -46,7 +46,7 @@ RUN chmod 644 /etc/containers/containers.conf \ RUN echo -e "build:1:1000\nbuild:1002:64535" > /etc/subuid \ && echo -e "build:1:1000\nbuild:1002:64535" > /etc/subgid \ && mkdir -p /home/build/.local/share/containers \ - && chown -R build:build /home/build + && chown -R build:0 /home/build # Install Trivy RUN curl -sfL https://raw.githubusercontent.com/aquasecurity/trivy/main/contrib/install.sh | sh -s -- -b /usr/local/bin "v${TRIVY_VERSION}"