diff --git a/docker-compose.yml b/docker-compose.yml index 2688e9d..ad0fd1f 100644 --- a/docker-compose.yml +++ b/docker-compose.yml @@ -7,7 +7,18 @@ services: container_name: "libreddit" ports: - 8080:8080 + user: nobody + read_only: true + security_opt: + - no-new-privileges:true + cap_drop: + - ALL + networks: + - libreddit healthcheck: test: ["CMD", "wget", "--spider", "-q", "--tries=1", "http://localhost:8080/settings"] interval: 5m timeout: 3s + +networks: + libreddit: