From fded8dd9dfb02cd4ce61d5adf9bb888c39a07469 Mon Sep 17 00:00:00 2001 From: jowj Date: Tue, 1 May 2018 21:18:59 -0500 Subject: [PATCH] comment out passwordless sudo. --- docker/Dockerfile | 17 +++++++++-------- 1 file changed, 9 insertions(+), 8 deletions(-) diff --git a/docker/Dockerfile b/docker/Dockerfile index 8cf35ee..31f6578 100644 --- a/docker/Dockerfile +++ b/docker/Dockerfile @@ -42,15 +42,16 @@ RUN apk add \ # configure a user RUN addgroup -S "$username" \ - && adduser -S -G "$username" -s /bin/bash "$username" + && adduser -S -G "$username" -s /bin/bash "$username" \ + && chpasswd -ARG enablesudo="true" -RUN if test "$enablesudo"; then true \ - && echo "ENABLING PASSWORDLESS SUDO" >&2 \ - && echo "sudo should only be enabled in development, since root privs in your container can probably be leveraged to root privs on your host" >&2 \ - && echo "$username ALL=(ALL) NOPASSWD: ALL" > "/etc/sudoers.d/$username" \ - && chmod 0440 "/etc/sudoers.d/$username" \ -; fi +# ARG enablesudo="true" +# RUN if test "$enablesudo"; then true \ +# && echo "ENABLING PASSWORDLESS SUDO" >&2 \ +# && echo "sudo should only be enabled in development, since root privs in your container can probably be leveraged to root privs on your host" >&2 \ +# && echo "$username ALL=(ALL) NOPASSWD: ALL" > "/etc/sudoers.d/$username" \ +# && chmod 0440 "/etc/sudoers.d/$username" \ +# ; fi USER $username