Merge pull request #642 from jimmidyson/docker-selinux

Add selinux labelling option to docker_image hook type
This commit is contained in:
Anthony Sottile 2017-11-02 17:50:28 -05:00 committed by GitHub
commit 61aa43ddd2
No known key found for this signature in database
GPG key ID: 4AEE18F83AFDEB23

View file

@ -82,7 +82,10 @@ def docker_cmd():
'docker', 'run',
'--rm',
'-u', '{}:{}'.format(os.getuid(), os.getgid()),
'-v', '{}:/src:rw'.format(os.getcwd()),
# https://docs.docker.com/engine/reference/commandline/run/#mount-volumes-from-container-volumes-from
# The `Z` option tells Docker to label the content with a private
# unshared label. Only the current container can use a private volume.
'-v', '{}:/src:rw,Z'.format(os.getcwd()),
'--workdir', '/src',
)