From 3476a32427d205099fa3a9ae3ddcc1907d6e64ab Mon Sep 17 00:00:00 2001 From: shamel-hussain Date: Thu, 23 Feb 2023 10:22:05 +0100 Subject: [PATCH] RED-5718: Add a specific user to the cv service --- Dockerfile | 8 ++++++++ 1 file changed, 8 insertions(+) diff --git a/Dockerfile b/Dockerfile index 3d7768c..1e5e3cb 100644 --- a/Dockerfile +++ b/Dockerfile @@ -25,6 +25,14 @@ COPY ./src ./src COPY ./cv_analysis ./cv_analysis COPY ./setup.py ./setup.py +# User for the process to run as +RUN groupadd --gid 1001 non-root \ + && useradd --uid 1001 --gid 1001 -m non-root + RUN python3 -m pip install -e . +COPY --chown=1001:1001 ./src/serve.py ./src/serve.py +RUN chown -R 1001:1001 ./cv_analysis ./cv_analysis +RUN chown -R 1001:1001 ./incl ./incl + CMD ["python3", "-u", "src/serve.py"] \ No newline at end of file