Add no-new-privs note

pull/274/head
thespad 2024-12-17 17:09:15 +00:00
rodzic e008eda909
commit 7672e62d41
Nie znaleziono w bazie danych klucza dla tego podpisu
1 zmienionych plików z 1 dodań i 0 usunięć

Wyświetl plik

@ -35,6 +35,7 @@ Our images use s6 as a supervisor and that needs to be able to write its service
* Docker Mods will not be run * Docker Mods will not be run
* Custom Services will not be run * Custom Services will not be run
* Custom Scripts will be limited in their functionality * Custom Scripts will be limited in their functionality
* You cannot set `no-new-privileges=true` as it will prevent s6 from being able to start the init process
For all of these reasons, we recommend you *do not* switch existing container instances to run with a non-root user without careful testing. For all of these reasons, we recommend you *do not* switch existing container instances to run with a non-root user without careful testing.