• Artwork@lemmy.world
    link
    fedilink
    English
    arrow-up
    2
    ·
    edit-2
    16 days ago

    The question is asked, yet no actual answer is given for the article.
    A usual secure way is to set the bind-mounted modes to u+rwx and ownership to the container User UID, which you may check via docker inspect <container> or its image.

    Meanwhile, nice choice for the NodeRed! ✨

    User namespaces are an advanced feature and require coordination with other capabilities. For example, if volumes are mounted from the host, file ownership must be pre-arranged if you need read or write access to the volume contents.
    Source: https://docs.docker.com/engine/security/userns-remap