Commit Graph

2 Commits

Author SHA1 Message Date
Ryan Boehning
cc9f4fe692 Fix bad permissions on service account key in dbproxy startup script
The Cloud SQL Proxy container needs to mount the cloud-sql-proxy service
account key as a file so it can connect to the db. I was incorrectly
setting the permissions on this file to 400. Inside the container, the
proxy binary is being run by the `nonroot` user. This user has a
different uid compared to the user running `docker` outside the
container, so it can't read the file. The solution is to change the
permissions on the key to 444, so it's readable by `nonroot`.
2020-05-01 16:43:23 -07:00
Ryan Boehning
f7ef3d241a Initial commit 2020-04-19 03:40:44 -07:00