Skip to content

Allow envoy to run as non-root user in docker container #11311

@phlax

Description

@phlax

Currently envoy runs as root in the docker container.

Arguably, its more secure to run as non-root.

Allowing the user to be configurable also allows envoy to access/listen to sockets as a particular user or group.

I can PR if its helpful.

I have an example implementation here https://github.com/phlax/envoy

Metadata

Metadata

Assignees

No one assigned

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions