A non-root Cloud Run container starts but cannot read its mounted secret file
0 reputation · 15 Jun 2021, 09:00 UTC
An example container was changed to run as a non-root user. It starts, but reading a mounted Secret Manager file fails. The team verified that the runtime service account has secret access. What should be checked next, and why is this different from an environment-secret startup failure?
- Environment
- Editorial worked example. See the question for the scenario and assumptions.