Skip to Main Content
HCL Domino Ideas Portal

Welcome to the #dominoforever Product Ideas Forum! The place where you can submit product ideas and enhancement request. We encourage you to participate by voting on, commenting on, and creating new ideas. All new ideas will be evaluated by HCL Product Management & Engineering teams, and the next steps will be communicated. While not all submitted ideas will be executed upon, community feedback will play a key role in influencing which ideas are and when they will be implemented.

For more information and upcoming events around #dominoforever, please visit our Destination Domino Page

Status Shipped
Workspace Sametime
Categories Meetings
Created by Guest
Created on Jul 8, 2021

Add support for non-root containers

Ensuring that a container is able to perform only a very limited set of operations is vital for production deployments. This is possible with the use of non-root containers, which are executed by a user different from root.
Also, in environments like Openshift, using non-root containers is mandatory.

Therefore we need non-root Container support for Sametime Meetings "Kubernetes" deployments.

See
https://engineering.bitnami.com/articles/running-non-root-containers-on-openshift.html
https://kubernetes.io/blog/2018/07/18/11-ways-not-to-get-hacked/#8-run-containers-as-a-non-root-user
https://unit42.paloaltonetworks.com/non-root-containers-kubernetes-cve-2019-11245-care/
for details.

  • Attach files