Убрать privileged режим из Docker #80
Reference in New Issue
Block a user
Delete Branch "%!s()"
Deleting a branch is permanent. Although the deleted branch may continue to exist for a short time before it actually gets removed, it CANNOT be undone in most cases. Continue?
Проблема
docker-compose.yml:privileged: true,cap_add: [NET_ADMIN, SYS_MODULE]— полный root-доступ к хосту.Решение
privileged: trueSYS_MODULE— оставить толькоNET_ADMIN(для WireGuard)USER appuserв DockerfileПриоритет: ВЫСОКИЙ