Files
dockwatch/examples/compose-host-security-audit.override.yml
T
jbergner 97004838a3
release-tag / release-image (push) Successful in 2m33s
v9.4.1
2026-09-01 06:31:55 +02:00

15 lines
459 B
YAML

# READ-ONLY HOST SECURITY AUDIT
#
# This mode can inspect installed host configuration and files but cannot
# change packages or configuration. Active service state is reported only when
# the optional host namespace executor is available.
services:
dockwatch:
environment:
HOST_ROOT: /host
HOST_SECURITY_ENABLED: "true"
ALLOW_HOST_SECURITY_CHANGES: "false"
ALLOW_HOST_PACKAGE_MANAGEMENT: "false"
volumes:
- /:/host:ro