From ef8b8f0be734c9cdd18b287d50949e35d635157f Mon Sep 17 00:00:00 2001 From: Wang Yan Date: Tue, 12 Jul 2022 14:52:18 +0800 Subject: [PATCH] resolve the cve export volumn permission (#17157) See the right uid and gid for the scandata_exports in the prepare Signed-off-by: Wang Yan --- make/photon/prepare/utils/jobservice.py | 5 ++++- 1 file changed, 4 insertions(+), 1 deletion(-) diff --git a/make/photon/prepare/utils/jobservice.py b/make/photon/prepare/utils/jobservice.py index 133f047bc..0c173c9a4 100644 --- a/make/photon/prepare/utils/jobservice.py +++ b/make/photon/prepare/utils/jobservice.py @@ -15,9 +15,12 @@ def prepare_job_service(config_dict): log_level = config_dict['log_level'].upper() - # Job log is stored in data dir + # Job log and exported reports are stored in data dir job_log_dir = os.path.join('/data', "job_logs") prepare_dir(job_log_dir, uid=DEFAULT_UID, gid=DEFAULT_GID) + job_log_dir = os.path.join('/data', "scandata_exports") + prepare_dir(job_log_dir, uid=DEFAULT_UID, gid=DEFAULT_GID) + # Render Jobservice env render_jinja( job_service_env_template_path,