NoNewPrivileges on most containers. drop all caps on a few others
This commit is contained in:
parent
fb2dd2c723
commit
b3e4af5aca
36 changed files with 80 additions and 1 deletions
|
|
@ -10,6 +10,8 @@ PublishPort=20564:22
|
|||
Volume=/var/containers/knot/keys:/etc/ssh/keys:Z
|
||||
Volume=/var/containers/knot/repositories:/home/git/repositories:Z
|
||||
Volume=/var/containers/knot/data:/app:Z
|
||||
# Security
|
||||
NoNewPrivileges=true
|
||||
|
||||
[Service]
|
||||
Restart=always
|
||||
|
|
|
|||
Loading…
Add table
Add a link
Reference in a new issue