1
0
Fork 0

Restrict permissions on quadlet directory
All checks were successful
/ build-kde (push) Successful in 12m34s
/ build-gnome (push) Successful in 8m3s

This commit is contained in:
ver4a 2024-11-16 01:03:25 +01:00
parent 5b40fc2724
commit 6da7a8d562
2 changed files with 6 additions and 0 deletions

View file

@ -30,5 +30,8 @@ COPY etc /etc
RUN firewall-offline-cmd --set-default-zone public RUN firewall-offline-cmd --set-default-zone public
RUN firewall-offline-cmd --remove-service ssh RUN firewall-offline-cmd --remove-service ssh
# Restrict permissions on quadlet directory
RUN chmod 700 /etc/containers/systemd
# https://github.com/ostreedev/ostree-rs-ext/issues/159 # https://github.com/ostreedev/ostree-rs-ext/issues/159
RUN ostree container commit RUN ostree container commit

View file

@ -30,5 +30,8 @@ COPY etc /etc
RUN firewall-offline-cmd --set-default-zone public RUN firewall-offline-cmd --set-default-zone public
RUN firewall-offline-cmd --remove-service ssh RUN firewall-offline-cmd --remove-service ssh
# Restrict permissions on quadlet directory
RUN chmod 700 /etc/containers/systemd
# https://github.com/ostreedev/ostree-rs-ext/issues/159 # https://github.com/ostreedev/ostree-rs-ext/issues/159
RUN ostree container commit RUN ostree container commit