diff --git a/.github/workflows/build.yml b/.github/workflows/build.yml index 03d1083e..1b8fbf6a 100644 --- a/.github/workflows/build.yml +++ b/.github/workflows/build.yml @@ -14,9 +14,6 @@ jobs: timeout-minutes: 5 steps: - - run: whoami - - run: cat /etc/group - - run: cat /etc/passwd - name: github-cleanup uses: renovatebot/internal-tools@v0 continue-on-error: true diff --git a/src/renovate.ts b/src/renovate.ts index 7c5798c0..12dace89 100644 --- a/src/renovate.ts +++ b/src/renovate.ts @@ -20,15 +20,16 @@ class Renovate { } async runDockerContainer(): Promise { - await exec('whoami'); - await exec('sudo', ['usermod', '-aG', 'docker', 'runneradmin']); const commandArguments = [ '--rm', `--env ${this.configFileEnv}=${this.configFileMountPath()}`, `--env ${this.tokenEnv}=${this.token}`, + `-e RENOVATE_DOCKER_USER=1001`, + `-e HOME=/home/ubuntu`, `--volume ${this.configFile}:${this.configFileMountPath()}`, `-v /var/run/docker.sock:/var/run/docker.sock`, `-v /tmp:/tmp`, + `-u 1001`, this.docker.image(), ]; const command = `docker run ${commandArguments.join(' ')}`;