Browse Source

Set owner/group to root/root when unarchiving kata-containers (#10338)

Set owner/group to root/root when unarchiving kata-containers binary to prevent kata-containers binaries/directories and especially / from getting chowned to 1001:123, the file owner specified in the kata-containers archive
pull/10346/head
Nico 1 year ago
committed by GitHub
parent
commit
b5ce69cf3c
No known key found for this signature in database GPG Key ID: 4AEE18F83AFDEB23
1 changed files with 2 additions and 0 deletions
  1. 2
      roles/container-engine/kata-containers/tasks/main.yml

2
roles/container-engine/kata-containers/tasks/main.yml

@ -9,6 +9,8 @@
src: "{{ downloads.kata_containers.dest }}" src: "{{ downloads.kata_containers.dest }}"
dest: "/" dest: "/"
mode: 0755 mode: 0755
owner: root
group: root
remote_src: yes remote_src: yes
- name: Kata-containers | Create config directory - name: Kata-containers | Create config directory

Loading…
Cancel
Save