Commit 5068770e authored by nimrod's avatar nimrod
Browse files

Set the owner for copied files.

For security reasons.
parent 89e09310
Loading
Loading
Loading
Loading
Loading
+4 −4
Original line number Diff line number Diff line
@@ -18,11 +18,11 @@ RUN apt-get update && \
    && \
    rm -rf /tmp/* /var/tmp/* /var/lib/apt/lists/* /var/cache/apt/archives/*
COPY --from=repo-key /gnupghome/mongodb.gpg /usr/share/keyrings/mongodb.gpg
COPY mongodb.sources /etc/apt/sources.list.d/
COPY --chown=root:root mongodb.sources /etc/apt/sources.list.d/
COPY --from=repo-key /gnupghome/google-cloud.gpg /usr/share/keyrings/google-cloud.gpg
COPY google-cloud.sources /etc/apt/sources.list.d/
COPY --chown=root:root google-cloud.sources /etc/apt/sources.list.d/
COPY --from=repo-key /gnupghome/heroku.gpg /usr/share/keyrings/heroku.gpg
COPY heroku.list /etc/apt/sources.list.d/
COPY --chown=root:root heroku.list /etc/apt/sources.list.d/
# hadolint ignore=DL3008,DL3013,DL3027
RUN apt-get update && \
    DEBIAN_FRONTEND=noninteractive apt-get install --yes --no-install-recommends \
@@ -240,7 +240,7 @@ RUN apt-get update && \
    sed -i -e 's/ ALL$/ NOPASSWD:ALL/' /etc/sudoers && \
    rm /etc/ssh/ssh_host_* && \
    rm -rf /tmp/* /var/tmp/* /var/lib/apt/lists/* /var/cache/apt/archives/* ~/.cache/*
COPY bfg /usr/local/bin/
COPY --chown=root:root bfg /usr/local/bin/
LABEL com.github.containers.toolbox="true" \
      com.github.debarshiray.toolbox="true"
ENV PATH /usr/lib/go/bin:/usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/bin:/sbin:/bin