metadata.yaml 1.1 KB

1234567891011121314151617181920212223242526272829303132
  1. runAsContext:
  2. - userName: root
  3. groupName: root
  4. gid: 0
  5. uid: 0
  6. description: Nextcloud runs as root user.
  7. - userName: root
  8. groupName: root
  9. gid: 999
  10. uid: 999
  11. description: Postgres runs as root user.
  12. - userName: root
  13. groupName: root
  14. gid: 0
  15. uid: 0
  16. description: Nginx runs as root user. (Nginx only runs when certificate is provided)
  17. capabilities:
  18. - name: CHOWN
  19. description: Nextcloud, Nginx and Postgres are able to chown files.
  20. - name: FOWNER
  21. description: Nextcloud, Nginx and Postgres are able to bypass permission checks for it's sub-processes.
  22. - name: DAC_OVERRIDE
  23. description: Nextcloud, Nginx and Postgres are able to bypass permission checks.
  24. - name: SETGID
  25. description: Nextcloud, Nginx and Postgres are able to set group ID for it's sub-processes.
  26. - name: SETUID
  27. description: Nextcloud, Nginx and Postgres are able to set user ID for it's sub-processes.
  28. - name: NET_BIND_SERVICE
  29. description: Nextcloud, Nginx and Postgres are able to bind to privileged ports.
  30. - name: NET_RAW
  31. description: Nextcloud, Nginx and Postgres are able to use raw sockets.
  32. hostMounts: []