mirror of
https://github.com/bitwarden/server.git
synced 2025-06-30 15:42:48 -05:00
step down from host root LUID
This commit is contained in:
@ -1,18 +1,26 @@
|
||||
#!/bin/bash
|
||||
|
||||
NOUSER=`id -u bitwarden > /dev/null 2>&1; echo $?`
|
||||
USERNAME="bitwarden"
|
||||
NOUSER=`id -u $USERNAME > /dev/null 2>&1; echo $?`
|
||||
LUID=${LOCAL_UID:-999}
|
||||
if [ $NOUSER == 0 ] && [ `id -u bitwarden` != $LUID ]
|
||||
|
||||
# Step down from host root
|
||||
if [ $LUID == 0 ]
|
||||
then
|
||||
usermod -u $LUID bitwarden
|
||||
elif [ $NOUSER == 1 ]
|
||||
then
|
||||
useradd -r -u $LUID -g bitwarden bitwarden
|
||||
LUID=999
|
||||
fi
|
||||
|
||||
chown -R bitwarden:bitwarden /app
|
||||
if [ $NOUSER == 0 ] && [ `id -u $USERNAME` != $LUID ]
|
||||
then
|
||||
usermod -u $LUID $USERNAME
|
||||
elif [ $NOUSER == 1 ]
|
||||
then
|
||||
useradd -r -u $LUID -g $USERNAME $USERNAME
|
||||
fi
|
||||
|
||||
chown -R $USERNAME:$USERNAME /app
|
||||
mkdir -p /etc/bitwarden/core
|
||||
mkdir -p /etc/bitwarden/logs
|
||||
chown -R bitwarden:bitwarden /etc/bitwarden
|
||||
chown -R $USERNAME:$USERNAME /etc/bitwarden
|
||||
|
||||
gosu bitwarden:bitwarden dotnet /app/Admin.dll
|
||||
gosu $USERNAME:$USERNAME dotnet /app/Admin.dll
|
||||
|
@ -1,22 +1,30 @@
|
||||
#!/bin/bash
|
||||
|
||||
NOUSER=`id -u bitwarden > /dev/null 2>&1; echo $?`
|
||||
USERNAME="bitwarden"
|
||||
NOUSER=`id -u $USERNAME > /dev/null 2>&1; echo $?`
|
||||
LUID=${LOCAL_UID:-999}
|
||||
if [ $NOUSER == 0 ] && [ `id -u bitwarden` != $LUID ]
|
||||
|
||||
# Step down from host root
|
||||
if [ $LUID == 0 ]
|
||||
then
|
||||
usermod -u $LUID bitwarden
|
||||
LUID=999
|
||||
fi
|
||||
|
||||
if [ $NOUSER == 0 ] && [ `id -u $USERNAME` != $LUID ]
|
||||
then
|
||||
usermod -u $LUID $USERNAME
|
||||
elif [ $NOUSER == 1 ]
|
||||
then
|
||||
useradd -r -u $LUID -g bitwarden bitwarden
|
||||
useradd -r -u $LUID -g $USERNAME $USERNAME
|
||||
fi
|
||||
|
||||
touch /var/log/cron.log
|
||||
chown bitwarden:bitwarden /var/log/cron.log
|
||||
chown -R bitwarden:bitwarden /app
|
||||
chown -R bitwarden:bitwarden /jobs
|
||||
chown $USERNAME:$USERNAME /var/log/cron.log
|
||||
chown -R $USERNAME:$USERNAME /app
|
||||
chown -R $USERNAME:$USERNAME /jobs
|
||||
mkdir -p /etc/bitwarden/core
|
||||
mkdir -p /etc/bitwarden/logs
|
||||
chown -R bitwarden:bitwarden /etc/bitwarden
|
||||
chown -R $USERNAME:$USERNAME /etc/bitwarden
|
||||
|
||||
env >> /etc/environment
|
||||
cron
|
||||
|
@ -1,17 +1,25 @@
|
||||
#!/bin/bash
|
||||
|
||||
NOUSER=`id -u bitwarden > /dev/null 2>&1; echo $?`
|
||||
USERNAME="bitwarden"
|
||||
NOUSER=`id -u $USERNAME > /dev/null 2>&1; echo $?`
|
||||
LUID=${LOCAL_UID:-999}
|
||||
if [ $NOUSER == 0 ] && [ `id -u bitwarden` != $LUID ]
|
||||
|
||||
# Step down from host root
|
||||
if [ $LUID == 0 ]
|
||||
then
|
||||
usermod -u $LUID bitwarden
|
||||
elif [ $NOUSER == 1 ]
|
||||
then
|
||||
useradd -r -u $LUID -g bitwarden bitwarden
|
||||
LUID=999
|
||||
fi
|
||||
|
||||
chown -R bitwarden:bitwarden /app
|
||||
chown -R bitwarden:bitwarden /etc/iconserver
|
||||
if [ $NOUSER == 0 ] && [ `id -u $USERNAME` != $LUID ]
|
||||
then
|
||||
usermod -u $LUID $USERNAME
|
||||
elif [ $NOUSER == 1 ]
|
||||
then
|
||||
useradd -r -u $LUID -g $USERNAME $USERNAME
|
||||
fi
|
||||
|
||||
gosu bitwarden:bitwarden /etc/iconserver/iconserver &
|
||||
gosu bitwarden:bitwarden dotnet /app/Icons.dll iconsSettings:bestIconBaseUrl=http://localhost:8080
|
||||
chown -R $USERNAME:$USERNAME /app
|
||||
chown -R $USERNAME:$USERNAME /etc/iconserver
|
||||
|
||||
gosu $USERNAME:$USERNAME /etc/iconserver/iconserver &
|
||||
gosu $USERNAME:$USERNAME dotnet /app/Icons.dll iconsSettings:bestIconBaseUrl=http://localhost:8080
|
||||
|
@ -1,21 +1,29 @@
|
||||
#!/bin/bash
|
||||
|
||||
NOUSER=`id -u bitwarden > /dev/null 2>&1; echo $?`
|
||||
USERNAME="bitwarden"
|
||||
NOUSER=`id -u $USERNAME > /dev/null 2>&1; echo $?`
|
||||
LUID=${LOCAL_UID:-999}
|
||||
if [ $NOUSER == 0 ] && [ `id -u bitwarden` != $LUID ]
|
||||
|
||||
# Step down from host root
|
||||
if [ $LUID == 0 ]
|
||||
then
|
||||
usermod -u $LUID bitwarden
|
||||
LUID=999
|
||||
fi
|
||||
|
||||
if [ $NOUSER == 0 ] && [ `id -u $USERNAME` != $LUID ]
|
||||
then
|
||||
usermod -u $LUID $USERNAME
|
||||
elif [ $NOUSER == 1 ]
|
||||
then
|
||||
useradd -r -u $LUID -g bitwarden bitwarden
|
||||
useradd -r -u $LUID -g $USERNAME $USERNAME
|
||||
fi
|
||||
|
||||
mkdir -p /etc/bitwarden/identity
|
||||
mkdir -p /etc/bitwarden/core
|
||||
mkdir -p /etc/bitwarden/logs
|
||||
chown -R bitwarden:bitwarden /etc/bitwarden
|
||||
chown -R $USERNAME:$USERNAME /etc/bitwarden
|
||||
|
||||
cp /etc/bitwarden/identity/identity.pfx /app/identity.pfx
|
||||
chown -R bitwarden:bitwarden /app
|
||||
chown -R $USERNAME:$USERNAME /app
|
||||
|
||||
gosu bitwarden:bitwarden dotnet /app/Identity.dll
|
||||
gosu $USERNAME:$USERNAME dotnet /app/Identity.dll
|
||||
|
Reference in New Issue
Block a user