Browse Source

.github/workflows: seccomp=unconfined

Run docker without the default seccomp profile

Suggested-by: Martin Steegmanns <martin.steegmanns@govcert.etat.lu>
Signed-off-by: Leon Anavi <leon.anavi@konsulko.com>
Leon Anavi 3 weeks ago
parent
commit
1059a239ca
2 changed files with 2 additions and 0 deletions
  1. 1 0
      .github/workflows/compliance.yml
  2. 1 0
      .github/workflows/yocto-builds.yml

+ 1 - 0
.github/workflows/compliance.yml

@@ -24,6 +24,7 @@ jobs:
       - name: Do DCO check
         run: |
           docker run --rm --security-opt apparmor=unconfined \
+            --security-opt seccomp=unconfined \
             -v "$GITHUB_WORKSPACE:/work:ro" \
             --env "BASE_REF=$GITHUB_BASE_REF" \
             "dco-check-${{ github.event.number }}"

+ 1 - 0
.github/workflows/yocto-builds.yml

@@ -67,6 +67,7 @@ jobs:
       - name: Build the image
         run: |
           docker run --rm --security-opt apparmor=unconfined \
+            --security-opt seccomp=unconfined \
             -v "$GITHUB_WORKSPACE:/work:ro" \
             -v "$DL_DIR:$DL_DIR:rw" \
             -v "$SSTATE_DIR:$SSTATE_DIR:rw" \