[Solved] Restrict Docker container permissions to read-only (but not for appdata).


Recommended Posts

Hello,

 

Problem:

I have a container (Jellyfin), that accesses media files. I want Jellyfin to only have read-access on the media folders. But retain full file permissions in the appdata folder.

I don't know how to do this.

I read the official wiki and searched the forums, but didn't find anything directly related.

 

Why:

Seems like a good security precaution.

Emby, a related program, have had bugs that delete media libraries. [1][2]

 

 

The Jellyfin container have UMASK, PUID and PGID options.

I have a cache disk that my 'system', 'appdata' and Docker.img is on.

Thank you for reading.

Any help appreciated.

 

 

 

Edited by maxar
Marked as "solved".
Link to comment
6 minutes ago, trurl said:

Edit the mapping and change the Access Mode

 

Ok. I feel a bit stupid now, considering how easy that was.

Thank you so much for your fast answer!

 

Here are 3 pictures for posterity, in case someone else with this question finds this forum thread.

 

firefox_2020-07-30_02-03-45.png

firefox_2020-07-30_01-58-36.png

firefox_2020-07-30_01-58-22.png

  • Like 1
Link to comment

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.
Note: Your post will require moderator approval before it will be visible.

Guest
Reply to this topic...

×   Pasted as rich text.   Restore formatting

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.