All notable changes to this project will be documented in this file.
The format is based on Keep a Changelog, and this project adheres to Semantic Versioning.
openssh-server
: added ed25519
host keydocker-compose
: added cpu & memory resource limitsSSH_CLIENT_PUBLIC_KEYS
(instead of mounting /home/dump/.ssh/authorized_keys
)MYSQLDUMP_ARGS
is not setopenssh-server
: listen on port 2200
(previously 2222
)docker-compose
: read-only container root filesystemdocker-compose
: require version 2.3
Dockerfile
& docker-compose
: add registry to base image specifiers for podman
docker-compose
: drop capabilities, disallow gaining new privilegesopenssh-server
: disabled message authentication code algorithms
hmac-sha2-512
, hmac-sha2-256
& umac-128@openssh.com
(as recommended by ssh-audit.com
)mysqldump
when client connects