Commit 8ac53ff
authored
feat: run nginx in non-privileged mode (#117)
- Frontend UIs (nginx):
- container is run as `nginx(101)` user and `nginx(101)` group.
- ownership of below directories/files are given to `nginx` user and group.
- `/usr/share/nginx`
- `/etc/nginx`
- `/var/cache/nginx`
- `/var/run/nginx.pid`
- container binds to port `8080` instead of previous/default `80`. this is because port `80` is treated as a special port that requires elevated privileges/root.1 parent d1b7443 commit 8ac53ff
3 files changed
+14
-2
lines changed| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
11 | 11 | | |
12 | 12 | | |
13 | 13 | | |
| 14 | + | |
| 15 | + | |
| 16 | + | |
| 17 | + | |
| 18 | + | |
| 19 | + | |
| 20 | + | |
| 21 | + | |
14 | 22 | | |
15 | 23 | | |
16 | | - | |
| 24 | + | |
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
1 | 1 | | |
2 | | - | |
| 2 | + | |
3 | 3 | | |
4 | 4 | | |
5 | 5 | | |
| |||
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
25 | 25 | | |
26 | 26 | | |
27 | 27 | | |
| 28 | + | |
| 29 | + | |
| 30 | + | |
| 31 | + | |
28 | 32 | | |
29 | 33 | | |
0 commit comments