This is needed so people can build docker images without the need for full sudo access.
While this could be covered by sudo-to-root access, doing it via the group is cleaner and makes logs more obvious for auditing.
The users have been hand-added already, but this is not Puppetized yet.