From c68039185a6005eef8dfdfb88ef88efd18912f7a Mon Sep 17 00:00:00 2001 From: Willy Kloucek Date: Mon, 18 Jul 2022 10:12:28 +0200 Subject: [PATCH] relax folder permissions in the dockerfile for - /var/lib/ocis - /etc/ocis from 750 to 751, to allow oCIS running with uid/pid != 1000 to traverse these directories for eg. the case that a volume is mounted in these directories. --- ocis/docker/Dockerfile.linux.amd64 | 4 ++-- ocis/docker/Dockerfile.linux.arm | 4 ++-- ocis/docker/Dockerfile.linux.arm64 | 4 ++-- 3 files changed, 6 insertions(+), 6 deletions(-) diff --git a/ocis/docker/Dockerfile.linux.amd64 b/ocis/docker/Dockerfile.linux.amd64 index f2ac0931e28..8a0c6689413 100644 --- a/ocis/docker/Dockerfile.linux.amd64 +++ b/ocis/docker/Dockerfile.linux.amd64 @@ -26,10 +26,10 @@ RUN addgroup -g 1000 -S ocis-group && \ RUN mkdir -p /var/lib/ocis && \ chown -R ocis-user:ocis-group /var/lib/ocis && \ - chmod -R 750 /var/lib/ocis && \ + chmod -R 751 /var/lib/ocis && \ mkdir -p /etc/ocis && \ chown -R ocis-user:ocis-group /etc/ocis && \ - chmod -R 750 /etc/ocis + chmod -R 751 /etc/ocis VOLUME [ "/var/lib/ocis", "/etc/ocis" ] WORKDIR /var/lib/ocis diff --git a/ocis/docker/Dockerfile.linux.arm b/ocis/docker/Dockerfile.linux.arm index b9b2d67862e..a0c93b406ec 100644 --- a/ocis/docker/Dockerfile.linux.arm +++ b/ocis/docker/Dockerfile.linux.arm @@ -26,10 +26,10 @@ RUN addgroup -g 1000 -S ocis-group && \ RUN mkdir -p /var/lib/ocis && \ chown -R ocis-user:ocis-group /var/lib/ocis && \ - chmod -R 750 /var/lib/ocis && \ + chmod -R 751 /var/lib/ocis && \ mkdir -p /etc/ocis && \ chown -R ocis-user:ocis-group /etc/ocis && \ - chmod -R 750 /etc/ocis + chmod -R 751 /etc/ocis VOLUME [ "/var/lib/ocis", "/etc/ocis" ] WORKDIR /var/lib/ocis diff --git a/ocis/docker/Dockerfile.linux.arm64 b/ocis/docker/Dockerfile.linux.arm64 index 6c8b1595467..09560427301 100644 --- a/ocis/docker/Dockerfile.linux.arm64 +++ b/ocis/docker/Dockerfile.linux.arm64 @@ -26,10 +26,10 @@ RUN addgroup -g 1000 -S ocis-group && \ RUN mkdir -p /var/lib/ocis && \ chown -R ocis-user:ocis-group /var/lib/ocis && \ - chmod -R 750 /var/lib/ocis && \ + chmod -R 751 /var/lib/ocis && \ mkdir -p /etc/ocis && \ chown -R ocis-user:ocis-group /etc/ocis && \ - chmod -R 750 /etc/ocis + chmod -R 751 /etc/ocis VOLUME [ "/var/lib/ocis", "/etc/ocis" ] WORKDIR /var/lib/ocis