Details
-
New Feature
-
Status: Closed (View Workflow)
-
Major
-
Resolution: Won't Do
-
2.5
-
None
Description
Processes in Docker usually runs as root.
If someone is able to break out of the container, he has root permissions on the host.
So it was better to initate the start from maxscale-start and monit with a different user as maxscale.
Example:
non-root user docker