123456789101112131415161718192021222324252627282930313233343536 |
- runAsContext:
- - userName: root
- groupName: root
- gid: 0
- uid: 0
- description: Photoprism runs as root user.
- capabilities:
- - name: CHOWN
- description: Photoprism is able to chown files.
- - name: FOWNER
- description: Photoprism is able to bypass permission checks for it's sub-processes.
- - name: SYS_CHROOT
- description: Photoprism is able to use chroot.
- - name: MKNOD
- description: Photoprism is able to create device nodes.
- - name: DAC_OVERRIDE
- description: Photoprism is able to bypass permission checks.
- - name: FSETID
- description: Photoprism is able to set file capabilities.
- - name: KILL
- description: Photoprism is able to kill processes.
- - name: SETGID
- description: Photoprism is able to set group ID for it's sub-processes.
- - name: SETUID
- description: Photoprism is able to set user ID for it's sub-processes.
- - name: SETPCAP
- description: Photoprism is able to set process capabilities.
- - name: NET_BIND_SERVICE
- description: Photoprism is able to bind to privileged ports.
- - name: SETFCAP
- description: Photoprism is able to set file capabilities.
- - name: NET_RAW
- description: Photoprism is able to use raw sockets.
- - name: AUDIT_WRITE
- description: Photoprism is able to write to audit log.
- hostMounts: []
|