Skip to content

Conversation

@arjanvandervelde
Copy link

Hello Danielle! We've been running this for quite some time now with a small modification that makes it possible to use the nsswitch without having to be a member of the docker group. It works by compiling a simple executable that is installed with setgid permissions and calls docker inspect (by absolute path). Sorry for messing with the formatting.

-- Arjan

@danni
Copy link
Owner

danni commented Jan 18, 2016

Why does someone not in the docker group need to access a docker host?

@arjanvandervelde
Copy link
Author

we have users ssh into dockers. they'd do something like ssh user@container.docker. we do not want these users in the docker group per se because that practically gives them the entire host.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants