mirror of
https://github.com/falcosecurity/falco.git
synced 2025-09-26 12:48:51 +00:00
update(docker/rhel): using the new falcosecurity repo and falcosecurity GPG key
Signed-off-by: Leonardo Di Donato <leodidonato@gmail.com>
This commit is contained in:
committed by
poiana
parent
4d99ce1b65
commit
8415576097
@@ -3,20 +3,20 @@ FROM registry.access.redhat.com/rhel7
|
|||||||
LABEL maintainer="cncf-falco-dev@lists.cncf.io"
|
LABEL maintainer="cncf-falco-dev@lists.cncf.io"
|
||||||
|
|
||||||
### Atomic/OpenShift Labels - https://github.com/projectatomic/ContainerApplicationGenericLabels
|
### Atomic/OpenShift Labels - https://github.com/projectatomic/ContainerApplicationGenericLabels
|
||||||
LABEL name="falco" \
|
LABEL name="falco"
|
||||||
vendor="falcosecurity" \
|
LABEL vendor="falcosecurity"
|
||||||
url="http://falco.org/" \
|
LABEL url="http://falco.org"
|
||||||
summary="Container native runtime security" \
|
LABEL summary="Cloud Native Runtime Security"
|
||||||
description="Falco is an open source project for intrusion and abnormality detection for Cloud Native platforms." \
|
LABEL description="Falco is an open-source project for intrusion and abnormality detection for Cloud Native platforms."
|
||||||
run='docker run -d --name falco --restart always --privileged --net host --pid host -v /var/run/docker.sock:/host/var/run/docker.sock -v /dev:/host/dev -v /proc:/host/proc:ro -v /boot:/host/boot:ro -v /lib/modules:/host/lib/modules:ro -v /usr:/host/usr:ro -v /etc:/host/etc:ro --shm-size=350m registry.connect.redhat.com/sysdig/falco'
|
LABEL run='docker run -d --name falco --restart always --privileged --net host --pid host -v /var/run/docker.sock:/host/var/run/docker.sock -v /dev:/host/dev -v /proc:/host/proc:ro -v /boot:/host/boot:ro -v /lib/modules:/host/lib/modules:ro -v /usr:/host/usr:ro -v /etc:/host/etc:ro --shm-size=350m <image>'
|
||||||
|
|
||||||
COPY help.md /tmp/
|
COPY help.md /tmp/
|
||||||
|
|
||||||
ENV HOST_ROOT /host
|
ENV HOST_ROOT /host
|
||||||
ENV HOME /root
|
ENV HOME /root
|
||||||
|
|
||||||
ADD http://download.draios.com/stable/rpm/draios.repo /etc/yum.repos.d/draios.repo
|
ADD https://falco.org/repo/falcosecurity-rpm.repo /etc/yum.repos.d/falcosecurity.repo
|
||||||
RUN rpm --import https://s3.amazonaws.com/download.draios.com/DRAIOS-GPG-KEY.public && \
|
RUN rpm --import https://falco.org/repo/falcosecurity-3672BA8F.asc && \
|
||||||
rpm -Uvh https://dl.fedoraproject.org/pub/epel/epel-release-latest-7.noarch.rpm && \
|
rpm -Uvh https://dl.fedoraproject.org/pub/epel/epel-release-latest-7.noarch.rpm && \
|
||||||
yum clean all && \
|
yum clean all && \
|
||||||
REPOLIST=rhel-7-server-rpms,rhel-7-server-optional-rpms,epel,draios \
|
REPOLIST=rhel-7-server-rpms,rhel-7-server-optional-rpms,epel,draios \
|
||||||
|
Reference in New Issue
Block a user