diff --git a/Containerfile b/Containerfile index 36b3452..8db73b4 100644 --- a/Containerfile +++ b/Containerfile @@ -99,7 +99,9 @@ RUN sed -i -r \ chmod u+s /usr/bin/new{uid,gid}map && \ rm -f /home/podman/.bash* && \ echo DOCKER_HOST="unix:///tmp/podman-run-1000/podman/podman.sock" > /etc/profile.d/podman.sh && \ - echo "podman:10000:10000" | tee /etc/subuid > /etc/subgid + echo "podman:10000:10000" | tee /etc/subuid > /etc/subgid && \ + setcap -n 10000 cap_setuid+ep /usr/bin/newuidmap && \ + setcap -n 10000 cap_setuid+ep /usr/bin/newgidmap # Runtime rootless-mode configuration USER podman