From 61864f0fb2c7ffc90bbb85c969ae5b589dbbb92b Mon Sep 17 00:00:00 2001 From: Ric Klaren Date: Thu, 2 Jan 2025 06:39:38 -0600 Subject: [PATCH] fix: Add `cap_net_bind_service=+ep` to `/usr/bin/node` in Docker container (#25385) (#25387) --- docker/Dockerfile | 3 ++- 1 file changed, 2 insertions(+), 1 deletion(-) diff --git a/docker/Dockerfile b/docker/Dockerfile index 9d805a5c..47dcd502 100644 --- a/docker/Dockerfile +++ b/docker/Dockerfile @@ -12,7 +12,7 @@ FROM linux-${TARGETARCH}-alpine AS base ENV NODE_ENV=production WORKDIR /app -RUN apk add --no-cache tzdata eudev tini nodejs +RUN apk add --no-cache tzdata eudev tini nodejs setcap # Dependencies and build FROM base AS deps @@ -47,6 +47,7 @@ COPY package.json LICENSE index.js data/configuration.example.yaml ./ COPY docker/docker-entrypoint.sh /usr/local/bin/ RUN chmod +x /usr/local/bin/docker-entrypoint.sh +RUN setcap 'cap_net_bind_service=+ep' /usr/bin/node RUN mkdir /app/data