# Ver: 1.12 by Endial Fang (endial@126.com) # # 系统默认变量 ==================================================================== # 该部分变量为系统根据编译命令默认设置 # `TARGETPLATFORM`:构建后的目标平台信息。如 `linux/amd64`,`linux/arm/v7`,`windows/amd64` # `TARGETOS`:目标平台信息(TARGETPLATFORM)中的操作系统部分,如:`linux`、`windows` # `TARGETARCH`:目标平台信息(TARGETPLATFORM)中的平台架构部分,如:`amd64`、`arm` # `TARGETVARIANT`:目标平台信息(TARGETPLATFORM)中的版本变体部分,如:`v7` # `BUILDPLATFORM`:用于构建的节点平台信息 # `BUILDOS`:用于构建的节点平台信息(BUILDPLATFORM)中的操作系统部分 # `BUILDARCH`用于构建的节点平台信息(BUILDPLATFORM)中的平台架构部分 # `BUILDVARIANT`用于构建的节点平台信息(BUILDPLATFORM)中的版本变体部分 # 可变参数 ======================================================================== # 该部分变量,在编译命令中通过 `--build-arg` 传入;如果未设置,则使用下面对应的默认值 ARG APP_NAME=postgresql # 设置当前应用名称 ARG APP_VER=13.12 # 设置当前应用版本 ARG REGISTRY_URL="docker.colovu.com/" # 设置默认仓库地址,默认为本地仓库;定义时需要包含末尾的`/` ARG APT_SOURCE=aliyun # 设置 apt-get 源:default / ustc / aliyun ARG LOCAL_URL="http://local.colovu.com/dist" # 编译镜像时指定用于加速的本地软件包存储服务器地址 # 0. 预处理 ====================================================================== FROM --platform=${TARGETPLATFORM:-linux/amd64} ${REGISTRY_URL}colovu/dbuilder:12 as builder # 声明需要使用的全局可变参数 ARG APP_NAME ARG APP_VER ARG APT_SOURCE ARG LOCAL_URL # 选择软件包源,加速后续软件包安装 RUN select_source ${APT_SOURCE}; # 安装依赖的软件包及库 RUN install_pkg bison flex libedit-dev libxml2-dev libxslt-dev zlib1g-dev libreadline-dev uuid-dev \ libperl-dev libicu-dev libxslt1-dev libssl-dev libldap2-dev libkrb5-dev libpam0g-dev libselinux1-dev; # 下载并解压软件包 RUN set -eux; \ appName="${APP_NAME}-${APP_VER}.tar.gz"; \ sha256="3aef84ff557087bd01df4365a7a85e11678faa55ab6fb6c4283d57e41997a80c"; \ [ -n ${LOCAL_URL} ] && localURL=${LOCAL_URL}/${APP_NAME}; \ appUrls="${localURL:-} \ https://ftp.postgresql.org/pub/source/v${APP_VER} \ "; \ download_pkg unpack ${appName} "${appUrls}" -s "${sha256}"; # 源码编译 RUN set -eux; \ APP_ARCH=`arch` \ APP_SRC="/tmp/${APP_NAME}-${APP_VER}"; \ dpkgArch="$(dpkg --print-architecture)"; \ cd ${APP_SRC}; \ \ # update "DEFAULT_PGSOCKET_DIR" to "/var/run/postgresql" (matching Debian) # see https://anonscm.debian.org/git/pkg-postgresql/postgresql.git/tree/debian/patches/51-default-sockets-in-var.patch?id=8b539fcb3e093a521c095e70bdfa76887217b89f awk '$1 == "#define" && $2 == "DEFAULT_PGSOCKET_DIR" && $3 == "\"/tmp\"" { $3 = "\"/var/run/postgresql\""; print; next } { print }' src/include/pg_config_manual.h > src/include/pg_config_manual.h.new; \ grep '/var/run/postgresql' src/include/pg_config_manual.h.new; \ mv src/include/pg_config_manual.h.new src/include/pg_config_manual.h; \ gnuArch="$(dpkg-architecture --query DEB_BUILD_GNU_TYPE)"; \ # explicitly update autoconf config.guess and config.sub so they support more arches/libcs wget -O config/config.guess 'https://git.savannah.gnu.org/cgit/config.git/plain/config.guess?id=7d3d27baf8107b630586c962c057e22149653deb'; \ wget -O config/config.sub 'https://git.savannah.gnu.org/cgit/config.git/plain/config.sub?id=7d3d27baf8107b630586c962c057e22149653deb'; \ \ # configure options taken from: # https://anonscm.debian.org/cgit/pkg-postgresql/postgresql.git/tree/debian/rules?h=9.5 LDFLAGS="-L/usr/local/lib -L/usr/lib/${APP_ARCH}-linux-gnu" \ CPPFLAGS="-I/usr/local/include -D_GNU_SOURCE" \ ./configure \ --prefix=/usr/local/${APP_NAME} \ --build="$gnuArch" \ --enable-integer-datetimes \ --enable-thread-safety \ --disable-rpath \ --with-uuid=e2fs \ --with-gnu-ld \ --with-pgport=5432 \ --with-system-tzdata=/usr/share/zoneinfo \ --with-includes=/usr/local/include \ --with-libraries=/usr/local/lib \ --with-openssl \ --with-libxml \ --with-libxslt \ --with-icu \ --with-krb5 \ --with-ldap \ # --enable-tap-tests \ # "/usr/src/postgresql/src/backend/access/common/tupconvert.c:105: undefined reference to `libintl_gettext'" # --enable-nls \ # these make our image abnormally large (at least 100MB larger), which seems uncouth for an "Alpine" (ie, "small") variant :) # --enable-debug \ # --with-gssapi \ # --with-tcl \ # --with-perl \ # --with-python \ # --with-pam \ ; \ make -j "$(nproc)" world && make install-world; \ make -C contrib install; # 删除编译生成的多余文件 RUN set -eux; \ find /usr/local -name '*.a' -delete; \ rm -rf /usr/local/${APP_NAME}/include; # 检测并生成依赖文件记录 RUN set -eux; \ find /usr/local/${APP_NAME} -type f -executable -exec ldd '{}' ';' | \ awk '/=>/ { print $(NF-1) }' | xargs -r basename -a | sort -u | \ xargs -r dpkg-query --search 2>/dev/null | cut -d: -f1 | sort -u \ >>/usr/local/${APP_NAME}/runDeps; # 1. 生成镜像 ===================================================================== FROM --platform=${TARGETPLATFORM:-linux/amd64} ${REGISTRY_URL}colovu/debian:12 # 声明需要使用的全局可变参数(ARG声明的变量仅编译打包阶段有效) ARG APP_NAME ARG APP_VER ARG APT_SOURCE # 定义应用的基础信息变量(ENV声明的变量实例化后容器内有效) ENV APP_NAME=${APP_NAME} \ APP_VER=${APP_VER} \ APP_EXEC=postgres \ APP_USER=postgres \ \ LD_LIBRARY_PATH="/usr/local/${APP_NAME}/lib" \ PATH="${PATH}:/usr/local/${APP_NAME}/bin" LABEL \ "Version"="v${APP_VER}" \ "Description"="Docker image for ${APP_NAME}." \ "Github"="https://github.com/colovu/docker-${APP_NAME}" \ "Vendor"="Endial Fang (endial@126.com)" # 拷贝多阶段构建结果输出及客制化脚本 COPY --from=builder /usr/local/${APP_NAME} /usr/local/${APP_NAME} COPY customer / RUN set -eux; \ \ # 创建对应的用户及数据存储目录 useradd -U -u 996 -d /srv/${APP_NAME} -s /usr/sbin/nologin -r ${APP_USER}; \ mkdir -p /var/log/${APP_NAME} /var/run/${APP_NAME} /var/cache/${APP_NAME}; \ mkdir -p /srv/${APP_NAME}/conf /srv/${APP_NAME}/data /srv/${APP_NAME}/cert /srv/${APP_NAME}/log; \ chown -R ${APP_USER}:${APP_USER} /var/log/${APP_NAME} /var/run/${APP_NAME} /var/cache/${APP_NAME}; \ chown -R ${APP_USER}:${APP_USER} /usr/local/${APP_NAME} /srv/${APP_NAME}; \ \ /bin/bash -c "ln -sf /usr/local/${APP_NAME}/etc/${APP_NAME} /etc/"; \ \ # 选择软件包源,以加速后续软件包安装 select_source ${APT_SOURCE}; \ \ # 安装应用依赖的软件包及库 install_pkg `cat /usr/local/${APP_NAME}/runDeps`; \ \ # 执行后处理脚本 overrideShell="/usr/local/overrides/overrides-${APP_VER}.sh"; \ [ -e "${overrideShell}" ] && /bin/bash "${overrideShell}"; \ \ # 验证安装的应用 ${APP_EXEC} --version ; # 配置容器的数据卷、工作目录及服务端口(必须保证端口在1024之上) VOLUME ["/srv/${APP_NAME}/conf", "/srv/${APP_NAME}/data", "/srv/${APP_NAME}/cert", "/srv/${APP_NAME}/log"] WORKDIR /srv/${APP_NAME}/data EXPOSE 5432 STOPSIGNAL SIGINT #HEALTHCHECK NONE #HEALTHCHECK --interval=30s --timeout=30s --retries=3 CMD curl -fs http://localhost:8080/ || exit 1 #HEALTHCHECK --interval=10s --timeout=10s --retries=3 CMD netstat -ltun | grep 8080 HEALTHCHECK CMD PGPASSWORD="${PG_POSTGRES_PASSWORD:-${PG_PASSWORD}}" psql -h 127.0.0.1 -d postgres -U postgres -At -c "select version();" || exit 1 # 使用 dumb-init 启动入口 Shell,确保容器可以接收控制信号;并使用前台方式启动应用程序 ENTRYPOINT ["dumb-init", "entry.sh"] CMD ["run.sh"]