Skip to content

[TASK] Refactor the generated Dockerfile to be more secure #83

@edenreich

Description

@edenreich

Summary

Currently the running user in the dockerfile is root - which is bad from security perspective.

Ideally we have to create a user and after downloading and building all the global dependencies switch to a less privileged user (without root capabilities).

Acceptance Criteria

  • An a2a group is created
  • An agent user is created
  • The agent user is a part of the a2a group
  • Container image switches to this user at the end of the build

Metadata

Metadata

Assignees

No one assigned

    Labels

    refactorA code needs refactoring

    Type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions