forked from extern/podman-compose
Use SELinux mount flag for secrets
Signed-off-by: Henry Reed <github.69ofd@simplelogin.com>
This commit is contained in:
parent
0b853f29f4
commit
874192568f
@ -578,7 +578,7 @@ def get_secret_args(compose, cnt, secret):
|
||||
source_file = os.path.realpath(
|
||||
os.path.join(basedir, os.path.expanduser(source_file))
|
||||
)
|
||||
volume_ref = ["--volume", f"{source_file}:{dest_file}:ro,rprivate,rbind"]
|
||||
volume_ref = ["--volume", f"{source_file}:{dest_file}:Z,ro,rprivate,rbind"]
|
||||
if uid or gid or mode:
|
||||
sec = target if target else secret_name
|
||||
log(
|
||||
|
Loading…
Reference in New Issue
Block a user