refactored nftable managment, and fixed stop of the container
This commit is contained in:
@@ -2,8 +2,7 @@
|
||||
|
||||
chown nobody:nobody -R /execute/
|
||||
|
||||
capsh --caps="cap_net_admin+eip cap_setpcap,cap_setuid,cap_setgid+ep" \
|
||||
--keep=1 --user=nobody --addamb=cap_net_admin -- \
|
||||
-c "python3 /execute/app.py DOCKER"
|
||||
exec capsh --caps="cap_net_admin+eip cap_setpcap,cap_setuid,cap_setgid+ep" \
|
||||
--keep=1 --user=nobody --addamb=cap_net_admin -- -c "python3 /execute/app.py DOCKER"
|
||||
|
||||
|
||||
|
||||
Reference in New Issue
Block a user