utils/docker-run: make it compatible with SELinux
After switching to a fresh Fedora 38 installation with SELinux disabled, we noticed that utils/docker-run doesn't work as the applications running inside the container are not allowed to accept the data mounted through the bind mount. Since we do not really need to isolate and confine the build, but rather to provide a known environment, we don;t really need to enforce any SELinux confinment in the container. So, we tell docker to turn off label confinement for the container: https://manpages.org/docker-run --security-opt=[] Security Options [...] "label=disable" : Turn off label confinement for the container Suggested-by: Antoine Tenart <atenart@kernel.org> Signed-off-by: Thomas Petazzoni <thomas.petazzoni@bootlin.com> [yann.morin.1998@free.fr: use Antoine's proposal] Signed-off-by: Yann E. MORIN <yann.morin.1998@free.fr>
This commit is contained in:
parent
db777eef13
commit
3b877dc7c2
@ -18,6 +18,7 @@ declare -a docker_opts=(
|
||||
--rm
|
||||
--user "$(id -u):$(id -g)"
|
||||
--workdir "$(pwd)"
|
||||
--security-opt label=disable
|
||||
)
|
||||
|
||||
declare -a mountpoints=(
|
||||
|
Loading…
Reference in New Issue
Block a user