diff --git a/docker/no-driver/Dockerfile.distroless b/docker/no-driver/Dockerfile.distroless index 9900cc3c..2e99771e 100644 --- a/docker/no-driver/Dockerfile.distroless +++ b/docker/no-driver/Dockerfile.distroless @@ -6,7 +6,7 @@ ARG VERSION_BUCKET=bin ENV FALCO_VERSION=${FALCO_VERSION} ENV VERSION_BUCKET=${VERSION_BUCKET} -RUN apk update && apk add build-base gcc curl ca-certificates jq +RUN apk update && apk add build-base gcc curl ca-certificates jq elfutils WORKDIR / @@ -21,7 +21,7 @@ RUN FALCO_VERSION_URLENCODED=$(echo -n ${FALCO_VERSION}|jq -sRr @uri) && \ RUN sed -e 's/time_format_iso_8601: false/time_format_iso_8601: true/' < /falco/etc/falco/falco.yaml > /falco/etc/falco/falco.yaml.new \ && mv /falco/etc/falco/falco.yaml.new /falco/etc/falco/falco.yaml -FROM cgr.dev/chainguard/glibc-dynamic +FROM cgr.dev/chainguard/wolfi-base LABEL maintainer="cncf-falco-dev@lists.cncf.io" LABEL org.opencontainers.image.source="https://github.com/falcosecurity/falco" @@ -29,6 +29,8 @@ LABEL org.opencontainers.image.source="https://github.com/falcosecurity/falco" LABEL usage="docker run -i -t --privileged -v /var/run/docker.sock:/host/var/run/docker.sock -v /dev:/host/dev -v /proc:/host/proc:ro --name NAME IMAGE" # NOTE: for the "least privileged" use case, please refer to the official documentation +RUN apk update && apk add libelf + ENV HOST_ROOT /host ENV HOME /root